CVE-2023-28667 | Lead Generated Plugin up to 1.23 on WordPress tve_api_form_submit tve_labels deserialization (EUVD-2023-32328)
A vulnerability labeled as critical has been found in Lead Generated Plugin up to 1.23 on WordPress. Affected is the function tve_api_form_submit. Executing manipulation of the argument tve_labels can lead to deserialization.
This vulnerability appears as CVE-2023-28667. The attack may be performed from remote. There is no available exploit.