OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-103349

HIGH · CVSS 7.2 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-10-05 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

The Rymera Web Co Product Feed PRO for WooCommerce is vulnerable to a deserialization of untrusted data issue, allowing for object injection attacks. This could lead to unauthorized access or manipulation of the application, potentially compromising sensitive data. E-commerce businesses using versions up to 13.5.7 should prioritize patching this vulnerability to mitigate risks associated with exploitation.

CVE
CVE-2026-103349
Severity
HIGH
CVSS
7.2
EPSS
0.40%

Original NVD Description

Deserialization of Untrusted Data vulnerability in Rymera Web Co Product Feed PRO for WooCommerce woo-product-feed-pro allows Object Injection.This issue affects Product Feed PRO for WooCommerce: from n/a through 13.5.7.