CVE-2024-37502

MEDIUM EXPLOITED

Wpwebelite Woocommerce Social Login < 2.7.0 - Insecure Deserialization

Title source: rule

Description

Deserialization of Untrusted Data vulnerability in wpweb WooCommerce Social Login.This issue affects WooCommerce Social Login: from n/a through 2.6.3.

Scores

CVSS v3 5.4
EPSS 0.0035
EPSS Percentile 57.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N

Exploitation Intel

VulnCheck KEV 2024-07-05

Classification

CWE
CWE-502
Status published

Affected Products (1)

wpwebelite/woocommerce_social_login < 2.7.0

Timeline

Published Jul 09, 2024
Tracked Since Feb 18, 2026