CVE 6.5 MEDIUM

WordPress WP Webhooks plugin <= 3.3.8 - PHP Object Injection vulnerability_CVE-2025-66073

6.5 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Description

Deserialization of Untrusted Data vulnerability in Cozmoslabs WP Webhooks wp-webhooks allows Object Injection.This issue affects WP Webhooks: from n/a through <= 3.3.8.

Basic Information

ID CVE-2025-66073
Source Patchstack
Published Nov 21, 2025 at 12:29
Modified Nov 21, 2025 at 21:48

Affected Product

Vendor Cozmoslabs
Product WP Webhooks
Version n/a
Affected Versions Cozmoslabs WP Webhooks n/a

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.