CVE-2026-40725
CRITICAL
NVD
CVSS Score
9.8
Severity
CRITICAL
Published
Jun 17, 2026
Vendor
unknown
Description
Unauthenticated PHP Object Injection in WooCommerce Product Filters < 2.0.6 versions.
Unauthenticated PHP Object Injection in WooCommerce Product Filters < 2.0.6 versions.