PT-2026-21201 · Unknown · Woocommerce Category Banner Management+1

Dj

+1

·

Published

2026-02-20

·

Updated

2026-02-21

·

CVE-2026-22354

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dotstore Woocommerce Category Banner Management versions through 2.5.1
Description The software contains a flaw due to deserialization of untrusted data, which allows for object injection. This issue is present in the Woocommerce Category Banner Management banner-management-for-woocommerce component.
Recommendations Update Woocommerce Category Banner Management to a version later than 2.5.1.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2026-22354

Affected Products

Woocommerce Category Banner Management
Banner-Management-For-Woocommerce