Deserialization of Untrusted Data vulnerability in 10Web Slider by 10Web slider-wd allows Object Injection.This issue affects Slider by 10Web: from n/a through 1.2.62.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress Slider by 10Web plugin to the latest available version (at least 1.2.63).
Workaround
No workaround given by the vendor.
References
History
Sat, 10 Oct 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in 10Web Slider by 10Web slider-wd allows Object Injection.This issue affects Slider by 10Web: from n/a through 1.2.62. | |
| Title | WordPress Slider by 10Web plugin <= 1.2.62 - PHP Object Injection vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-10T14:00:10.868Z
Reserved: 2026-10-06T00:18:26.657Z
Link: CVE-2026-105885
No data.
Status : Received
Published: 2026-10-10T14:16:37.087
Modified: 2026-10-10T14:16:37.087
Link: CVE-2026-105885
No data.
OpenCVE Enrichment
No data.
Weaknesses