
🚨 CVE-2024-5335: Ultimate Store Kit Elementor Addo... Cookie-based PHP object injection with CVSS 9.8 - one malicious request away from RCE if target runs vulnerable themes/p... https://zerodaysignal.com/vulnerability/CVE-2024-5335 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
The post alerts about CVE‑2024‑5335, noting a cookie‑based PHP object injection and a high CVSS score with RCE potential, but does not provide a PoC, exploit code, or patch information.
