CVE-2026-39580HIGH NVDCVSS Score 8.1Severity HIGHPublished Jun 17, 2026Vendor unknownDescriptionUnauthenticated PHP Object Injection in Micdrop <= 1.3.1 versions.Referenceshttps://patchstack.com/database/wordpress/theme/micdrop/vulnerability/wordpress-micdrop-theme-1-3-1-php-object-injection-vulnerability?_s_id=cve