CVE intelligence

CVE-2026-19887

The Welcart e-Commerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.12.1 via deseriali

Published 2026-09-05 · CVSS

high

NIST record