Description b2evolution 6.7.6 suffer from an Object Injection vulnerability in /htsrv/call_plugin.php. Remediation References CVE-2016-8901 Related Vulnerabilities WordPress Plugin SVG Support Cross-Site Scripting (2.4.2) SharePoint CVE-2023-36764 Vulnerability (CVE-2023-36764) MySQL CVE-2019-2606 Vulnerability (CVE-2019-2606) WordPress Plugin Knews Multilingual Newsletters Cross-Site Request Forgery (1.2.5) WordPress Plugin Registration Forms-User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & Content Restriction Multiple Vulnerabilities (2.0.18) Severity Critical Classification CVE-2016-8901 CWE-138 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities