CVE-2026-94683: Justin Nealey Designsetgo
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Contributor PHP Object Injection in DesignSetGo <= 2.8.0 versions.
Affected products
- Justin Nealey Designsetgo: up to and including 2.8.0
Published 2026-09-30. Last modified 2026-09-30.