Vulnerabilities (CVE)

Filtered by vendor Collne Subscribe
Filtered by product Welcart
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-5952 1 Collne 1 Welcart 2023-12-08 N/A 9.8 CRITICAL
The Welcart e-Commerce WordPress plugin before 2.9.5 unserializes user input from cookies, which could allow unautehtniacted users to perform PHP Object Injection when a suitable gadget is present on the blog