Deserialization of Untrusted Data vulnerability in ExpressTech Quiz And Survey Master quiz-master-next allows Object Injection.This issue affects Quiz And Survey Master: from n/a through 11.2.7.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress Quiz And Survey Master plugin to the latest available version (at least 11.2.8).
Workaround
No workaround given by the vendor.
References
History
Fri, 09 Oct 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in ExpressTech Quiz And Survey Master quiz-master-next allows Object Injection.This issue affects Quiz And Survey Master: from n/a through 11.2.7. | |
| Title | WordPress Quiz And Survey Master plugin <= 11.2.7 - PHP Object Injection vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-09T12:08:37.866Z
Reserved: 2026-10-02T00:22:13.105Z
Link: CVE-2026-104392
No data.
Status : Deferred
Published: 2026-10-09T13:17:08.227
Modified: 2026-10-09T13:20:48.273
Link: CVE-2026-104392
No data.
OpenCVE Enrichment
Updated: 2026-10-09T14:00:07Z
Weaknesses