CVE-2025-69127CRITICAL NVDCVSS Score 9.8Severity CRITICALPublished Jun 17, 2026Vendor unknownDescriptionUnauthenticated PHP Object Injection in Plumbing <= 1.6 versions.Referenceshttps://patchstack.com/database/wordpress/theme/plumbing-parts/vulnerability/wordpress-plumbing-theme-1-6-php-object-injection-vulnerability?_s_id=cve