CVE-2026-66620HIGH NVDCVSS Score 7.2Severity HIGHPublished Aug 18, 2026Vendor unknownDescriptionEditor PHP Object Injection in OptionTree <= 2.7.3 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/option-tree/vulnerability/wordpress-optiontree-plugin-2-7-3-php-object-injection-vulnerability?_s_id=cve