Insecure Deserialization of untrusted data in rmccue/requests
Critical severity
GitHub Reviewed
Published
Apr 27, 2021
in
WordPress/Requests
•
Updated Feb 1, 2023
Description
Reviewed
Apr 27, 2021
Published by the National Vulnerability Database
Apr 27, 2021
Published to the GitHub Advisory Database
Apr 29, 2021
Last updated
Feb 1, 2023
Impact
Unserialization of untrusted data.
Patches
The issue has been patched and users of
Requests
1.6.0, 1.6.1 and 1.7.0 should update to version 1.8.0.References
Publications about the vulnerability:
Originally fixed in WordPress 5.5.2:
Related Security Advisories:
Notification to the Requests repo including a fix in:
For more information
If you have any questions or comments about this advisory:
References