CVE-2026-42723CRITICAL NVDCVSS Score 9.8Severity CRITICALPublished Oct 10, 2026Vendor unknownDescriptionUnauthenticated PHP Object Injection in CleanSkin <= 1.5.0 versions.Referenceshttps://patchstack.com/database/wordpress/theme/cleanskin/vulnerability/wordpress-cleanskin-theme-1-5-0-php-object-injection-vulnerability?_s_id=cve