First published: Thu May 09 2024(Updated: )
Deserialization of Untrusted Data vulnerability in BdThemes Ultimate Store Kit Elementor Addons.This issue affects Ultimate Store Kit Elementor Addons: from n/a through 2.0.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
BdThemes Ultimate Store Kit Elementor Addons | >=2.0.3 | |
BdThemes Ultimate Store Kit Elementor Addons | <=2.0.3 | |
WooCommerce | <=2.0.3 | |
WordPress EDD Builder | <=2.0.3 |
Update to 2.0.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4606 is classified as a high-severity vulnerability due to the risks associated with deserialization of untrusted data.
To mitigate CVE-2024-4606, update the BdThemes Ultimate Store Kit Elementor Addons to version 2.0.4 or later.
CVE-2024-4606 is a deserialization of untrusted data vulnerability affecting specific versions of the Ultimate Store Kit Elementor Addons.
CVE-2024-4606 affects BdThemes Ultimate Store Kit Elementor Addons versions from n/a through 2.0.3.
Exploitation of CVE-2024-4606 could lead to remote code execution and compromise of the affected WordPress installations.