PT-2026-27843 · Xtemos · Woodmart

Published

2026-03-25

·

Updated

2026-03-30

·

CVE-2026-23971

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions xtemos WoodMart versions n/a through 8.3.8
Description A flaw exists in the deserialization process of untrusted data within xtemos WoodMart woodmart, potentially allowing for object injection. This issue could allow an attacker to inject malicious objects. The vulnerable component involves the deserialization of data without proper validation.
Recommendations Update xtemos WoodMart to a version newer than 8.3.8.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2026-23971

Affected Products

Woodmart