漏洞描述:VillaTheme AFFI – Affiliate Marketing for WooCommerce (affi-affiliate-marketing-for-woo) 插件存在反序列化不可信数据漏洞,可导致对象注入。该漏洞影响 AFFI – Affiliate Marketing for WooCommerce 插件的 n/a 至 1.0.10 版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| VillaTheme | AFFI – Affiliate Marketing for WooCommerce | ≤ 1.0.10 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| VillaTheme | AFFI – Affiliate Marketing for WooCommerce | 0 ~ 1.0.10 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103071 | 7.5 HIGH | WordPress Thank You Page Customizer for WooCommerce plugin <= 1.2.3 - Content Injection vu |
| CVE-2026-100161 | 7.2 HIGH | Photo Reviews for WooCommerce <= 1.2.30 - Unauthenticated Stored DOM-Based Cross-Site Scri |
| CVE-2026-103357 | 6.9 MEDIUM | WordPress GIFT4U plugin <= 1.1.3 - Broken Access Control vulnerability |
| CVE-2026-103685 | 4.3 MEDIUM | WordPress ALD – Dropshipping and Fulfillment for AliExpress and WooCommerce plugin <= 2.2. |
No comments yet