Welcart e-Commerce
cpe:2.3:a:welcart:e-commerce:*:*:*:*:wordpress:*:*
- <= 2.11.6
A vulnerability allowing untrusted data deserialization has been identified in the Welcart e-Commerce WordPress plugin, specifically in versions through 2.11.6. This vulnerability could be exploited by remote, unauthenticated attackers to execute arbitrary code on websites using this plugin.
Exploitation of this vulnerability could lead to arbitrary code execution on the affected WordPress site.
Users are advised to update the Welcart e-Commerce plugin to version 2.11.12, which addresses this vulnerability. Instructions for updating the plugin are available on the Welcart website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.