PT-2026-20657 · WordPress · Yith Woocommerce Compare

Mcdruid

·

Publicado

2026-02-19

·

Atualizado

2026-02-19

·

CVE-2026-22333

CVSS v3.1

7.2

Alta

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions YITH WooCommerce Compare versions through 3.6.0
Description The YITH WooCommerce Compare plugin contains a flaw related to the deserialization of untrusted data, which can lead to object injection. This issue allows for potential compromise of the system through malicious data.
Recommendations Update YITH WooCommerce Compare to a version later than 3.6.0.

Correção

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-22333

Produtos afetados

Yith Woocommerce Compare