Object Injection Vulnerability in Collne Welcart e-Commerce Plugin for WordPress
CVE-2020-28339
8.8HIGH
What is CVE-2020-28339?
The Collne Welcart e-Commerce plugin for WordPress contains a vulnerability that allows for object injection through the function usces_unserialize. This security flaw exists due to improper handling of serialized objects, which can lead to potential exploitation risks. Versions prior to 1.9.36 are affected. Users are advised to update to the latest version to mitigate risks associated with this vulnerability.