CVE-2025-27130 Information

Description

Welcart e-Commerce 2.11.6 and earlier versions contains an untrusted data deserialization vulnerability. If this vulnerability is exploited arbitrary code may be executed by a remote unauthenticated attacker who can access websites created using the product.

Reference

https://jvn.jp/en/jp/JVN87266215/ https://www.welcart.com/archives/23868.html

Share on: