Vulnerabilities > Wpwax > Product Carousel Slider Grid Ultimate FOR Woocommerce

DATE CVE VULNERABILITY TITLE RISK
2024-03-13 CVE-2024-1950 Deserialization of Untrusted Data vulnerability in Wpwax Product Carousel Slider & Grid Ultimate for Woocommerce
The Product Carousel Slider & Grid Ultimate for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.9.7 via deserialization of untrusted input via shortcode.
network
low complexity
wpwax CWE-502
8.8