Deserialization of Untrusted Data vulnerability in impleCode eCommerce Product Catalog allows Object Injection. This issue affects eCommerce Product Catalog: from n/a through 3.4.3.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 17 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Deserialization of Untrusted Data vulnerability in impleCode eCommerce Product Catalog allows Object Injection. This issue affects eCommerce Product Catalog: from n/a through 3.4.3. | |
Title | WordPress eCommerce Product Catalog <= 3.4.3 - PHP Object Injection Vulnerability | |
Weaknesses | CWE-502 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2025-06-17T15:01:22.874Z
Updated: 2025-06-20T13:13:22.955Z
Reserved: 2025-06-04T09:42:17.747Z
Link: CVE-2025-49331

Updated: 2025-06-18T14:44:45.740Z

Status : Awaiting Analysis
Published: 2025-06-17T15:15:48.830
Modified: 2025-06-17T20:50:23.507
Link: CVE-2025-49331

No data.