Deserialization of Untrusted Data vulnerability in LoftOcean CozyStay cozystay allows Object Injection.This issue affects CozyStay: from n/a through < 1.7.1.
Metrics
Affected Vendors & Products
References
History
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in LoftOcean CozyStay allows Object Injection.This issue affects CozyStay: from n/a before 1.7.1. | Deserialization of Untrusted Data vulnerability in LoftOcean CozyStay cozystay allows Object Injection.This issue affects CozyStay: from n/a through < 1.7.1. |
| Title | WordPress CozyStay < 1.7.1 - PHP Object Injection Vulnerability | WordPress CozyStay theme < 1.7.1 - PHP Object Injection vulnerability |
| References | ||
| Metrics |
cvssV3_1
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 10 Jun 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in LoftOcean CozyStay allows Object Injection.This issue affects CozyStay: from n/a before 1.7.1. | |
| Title | WordPress CozyStay < 1.7.1 - PHP Object Injection Vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-01T15:55:36.728Z
Reserved: 2025-06-06T10:33:37.436Z
Link: CVE-2025-49507
No data.
Status : Awaiting Analysis
Published: 2025-06-10T13:15:23.283
Modified: 2026-04-01T17:25:18.420
Link: CVE-2025-49507
No data.
OpenCVE Enrichment
No data.