
Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
Disclosure
#CVE-2026-39471 - #PHP Object Injection in #ShortPixel Image Optimizer <=6.4.3. CVSS 7.2. No patch available. Disable plugin immediately. #devsecops #devops #developers #WordPress #infosec #sysadmin #cybersecurity #CVEAlert Detailed info: https://www.valtersit.com/cve/CVE-2026-39471
Post summary
The tweet announces a PHP Object Injection vulnerability (CVE‑2026‑39471) in ShortPixel Image Optimizer 6.4.3 and earlier with a CVSS score of 7.2, noting no patch exists and advising immediate plugin disable.
0000040
932 followersView on X
