cleantalk
Vulnerabilities and Security Researches

Carts Guru, CVE-2019-12241

CVE, Research URL

CVE-2019-12241

Application

Carts Guru

Published on
May 21, 2019
Research Description
The Carts Guru plugin 1.4.5 for WordPress allows Insecure Deserialization via a cartsguru-source cookie to classes/wc-cartsguru-event-handler.php.
Affected versions
Min -, max 1.4.6.
Status
vulnerable