cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, CVE-2025-27130

CVE, Research URL

CVE-2025-27130

Application

Welcart e-Commerce

Published on
Apr 01, 2025
Research Description
Welcart e-Commerce 2.11.6 and earlier versions contains an untrusted data deserialization vulnerability. If this vulnerability is exploited, arbitrary code may be executed by a remote unauthenticated attacker who can access websites created using the product.
Affected versions
max 2.11.6.
Status
vulnerable