CRITICAL
9.8 CVE-2026-42718 Published 10 Oct 2026
Booster for WooCommerce PHP Object Injection Vulnerability
Worried this affects your website?
Booster for WooCommerce versions up to and including 8.4.0 are affected by an unauthenticated PHP Object Injection vulnerability.
An attacker can exploit this flaw without authentication.
Reference: CVE-2026-42718 on NVD
← Back to Security News