High severity7.5NVD Advisory· Published Nov 7, 2020· Updated Jun 17, 2026
CVE-2020-28339
CVE-2020-28339
Description
The usc-e-shop (aka Collne Welcart e-Commerce) plugin before 1.9.36 for WordPress allows Object Injection because of usces_unserialize. There is not a complete POP chain.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/Welcart e-Commerce plugindescription
Patches
Vulnerability mechanics
References
2- www.wordfence.com/blog/2020/11/object-injection-vulnerability-in-welcart-e-commerce-plugin/nvdExploitThird Party Advisory
- wordpress.org/plugins/usc-e-shop/nvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.