Failing to properly validate incoming data, the suggest wizard is susceptible to insecure unserialize. To exploit this vulnerability a valid backend user account is needed.
{ "severity": "MODERATE", "github_reviewed": true, "cwe_ids": [], "github_reviewed_at": "2024-06-05T17:04:41Z", "nvd_published_at": null }