CVE-2026-28139
Unauthenticated PHP Object Injection in Ajax Search Lite <= 4.14.4 versions.
CVSS
9.8
Crítico
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 6 ago 2026 · Última mod.: 6 ago 2026 · CWE-502
Sin historial EPSS suficiente todavía.
Unauthenticated PHP Object Injection in Ajax Search Lite <= 4.14.4 versions.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-655819.8 CRÍ—
———Unauthenticated PHP Object Injection in AI ANN <= 1.29.0 versions.2hCVE-2026-655799.8 CRÍ—
———Unauthenticated PHP Object Injection in Agricola <= 1.21.0 versions.8hCVE-2026-655789.8 CRÍ—
———Unauthenticated PHP Object Injection in Agora <= 1.9 versions.2hCVE-2026-655779.8 CRÍ—
———Unauthenticated PHP Object Injection in Advice <= 1.18.0 versions.2hCVE-2026-655769.8 CRÍ—
———Unauthenticated PHP Object Injection in Adrena <= 1.2.14 versions.8hCVE-2026-655759.8 CRÍ—
———Unauthenticated PHP Object Injection in Accalia <= 1.5.3 versions.2h