CVE-2026-1360 | BuddyPress Plugin up to 14.5.0 on WordPress bp_unserialize_profile_field deserialization
A vulnerability classified as critical was found in BuddyPress Plugin up to 14.5.0 on WordPress. Affected by this issue is the function bp_unserialize_profile_field. Such manipulation leads to deserialization.
This vulnerability is referenced as CVE-2026-1360. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More