Sicuranext Blog
  • Home
  • WAAP
  • SOC
  • PWNPress
  • AI
Sign in Subscribe

Vulnerability Research

A collection of 2 posts
Exploiting a PHP Object Injection in Profile Builder Pro in the era of AI
Vulnerability Research

Exploiting a PHP Object Injection in Profile Builder Pro in the era of AI

WordPress plugin "Profile Builder Pro" (versions before 3.14.5) is susceptible to Unauthenticated PHP Object Injection. In this blog post, we discuss how we discovered and exploited the vulnerability using a novel POP chain, how AI helped in the process, taking a final look at targets in the wild.
19 Mar 2026 17 min read
Vtenext 25.02: A three-way path to RCE
Vulnerability Research

Vtenext 25.02: A three-way path to RCE

Multiple vulnerabilities in vtenext 25.02 and prior versions allow unauthenticated attackers to bypass authentication through three separate vectors, ultimately leading to remote code execution on the underlying server.
12 Aug 2025 16 min read
Page 1 of 1
Sicuranext Blog © 2026
  • Sign up
  • Home
  • WAAP
  • PWNPress
  • SicuraNext
Powered by Ghost