CVE-2026-105872 - WordPress Product Configurator for WooCommerce plugin <= 1.7.5 - PHP Object Injection vulnerability
CVE ID :CVE-2026-105872
Published : Oct. 9, 2026, 1:17 p.m. | 29 minutes ago
Description :Deserialization of Untrusted Data vulnerability in mklacroix Product Configurator for WooCommerce product-configurator-for-woocommerce allows Object Injection.This issue affects Product Configurator for WooCommerce: from n/a through 1.7.5.
Severity: 7.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Oct. 9, 2026, 1:17 p.m. | 29 minutes ago
Description :Deserialization of Untrusted Data vulnerability in mklacroix Product Configurator for WooCommerce product-configurator-for-woocommerce allows Object Injection.This issue affects Product Configurator for WooCommerce: from n/a through 1.7.5.
Severity: 7.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...