Welcart e-Commerce 2.11.6 and earlier versions contains an untrusted data deserialization vulnerability. If this vulnerability is exploited, arbitrary code may be executed by a remote unauthenticated attacker who can access websites created using the product.
| Software | From | Fixed in |
|---|---|---|
| welcart / welcart_e-commerce | - | 2.11.6.x |