Vulnerabilities > Webbuilder143

DATE CVE VULNERABILITY TITLE RISK
2024-12-21 CVE-2024-12721 Deserialization of Untrusted Data vulnerability in Webbuilder143 Custom Product Tabs for Woocommerce
The Custom Product Tabs For WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.2.4 via deserialization of untrusted input from the 'wb_custom_tabs' parameter.
network
low complexity
webbuilder143 CWE-502
7.2