Deserialization of Untrusted Data vulnerability in Liquid… OffSeq Threat Radar / 10h CVE-2026-95606 is a deserialization of untrusted data vulnerability in The Events Calendar plugin by Liquid Web / StellarWP. This flaw allows an attacker to perform object injection, which can lead to remote code execution or other severe impacts. The vulnerability affects all versions up to 6.17.4. The CVSS 3.1 base score is 9.8, reflecting network attack vector, low attack complexity, no privileges required, n