{ "id": "CVE-2023-6049", "sourceIdentifier": "contact@wpscan.com", "published": "2024-01-15T16:15:12.323", "lastModified": "2024-01-15T16:15:12.323", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "The Estatik Real Estate Plugin WordPress plugin before 4.1.1 unserializes user input via some of its cookies, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget chain is present on the blog" } ], "metrics": {}, "references": [ { "url": "https://wpscan.com/vulnerability/8cfd8c1f-2834-4a94-a3fa-c0cfbe78a8b7", "source": "contact@wpscan.com" } ] }