CVE-2026-49777

Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Implanted. This issue affects Product Slider Pro for WooCommerce: from n/a before 3.5.4.
Configurations

No configuration.

History

23 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de Validación Incorrecta de Cantidad Especificada en la Entrada en ShapedPlugin, LLC Product Slider Pro para WooCommerce permite la implantación de software malicioso. Este problema afecta a Product Slider Pro para WooCommerce: desde n/a antes de la 3.5.3. No hay versión parcheada disponible - el proveedor ha aplicado una corrección a una versión existente sin publicar una nueva versión. Si bien el parche proporcionado por el proveedor es válido, publicarlo bajo el número de versión existente deja a los usuarios incapaces de determinar de forma fiable si están ejecutando una instalación parcheada o vulnerable. Como resultado, tratamos esto como una versión sin parche.

08 Jun 2026, 17:16

Type Values Removed Values Added
Summary (en) Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Implanted. This issue affects Product Slider Pro for WooCommerce: from n/a before 3.5.3. No patched version is available - the vendor has applied a fix to an existing release without publishing a new version. While the patch provided by the vendor is valid, releasing it under the existing version number leaves users unable to reliably determine whether they are running a patched or vulnerable installation. As a result, we treat this as an unpatched version. (en) Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Implanted. This issue affects Product Slider Pro for WooCommerce: from n/a before 3.5.4.

05 Jun 2026, 09:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-05 09:16

Updated : 2026-07-23 07:10


NVD link : CVE-2026-49777

Mitre link : CVE-2026-49777

CVE.ORG link : CVE-2026-49777


JSON object : View

Products Affected

No product.

CWE
CWE-1284

Improper Validation of Specified Quantity in Input