cleantalk
Vulnerabilities and Security Researches

WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg, CVE-2025-54053

CVE, Research URL

CVE-2025-54053

Published on
Aug 20, 2025
Research Description
Deserialization of Untrusted Data vulnerability in Adrian Tobey Groundhogg allows Object Injection. This issue affects Groundhogg: from n/a through 4.2.2.
Affected versions
max 4.2.2.1.
Status
vulnerable