PatchSiren

wpdreams CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL wpdreams CVE published 2026-08-06

CVE-2026-28139

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-06T15:16:52.580Z and has not been modified since then. CVE-2026-28139 is an unauthenticated PHP Object Injection vulnerability in Ajax Search Lite plugin versions up to 4.14.4. The vulnerability has a CVSS score of 9.8 and is considered CRITICAL. Affected product deployments should be identified and [truncated]