CVE-2026-82222

Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP GiveWP allows Object Injection. This issue affects GiveWP: from n/a through 4.16.7.1.

  • Published Aug 28, 2026
  • CVSS 10.0 critical
  • 2.2% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-82222 at the National Vulnerability Database