High severity7.2NVD Advisory· Published Oct 25, 2022· Updated Jun 17, 2026
CVE-2022-3335
CVE-2022-3335
Description
The Kadence WooCommerce Email Designer WordPress plugin before 1.5.7 unserialises the content of an imported file, which could lead to PHP object injections issues when an admin import (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:kadencewp:kadence_woocommerce_email_designer:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:kadencewp:kadence_woocommerce_email_designer:*:*:*:*:*:wordpress:*:*range: <1.5.7
- (no CPE)range: 1.5.7
- Range: <1.5.7
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/39514705-c887-4a02-a77b-36e1dcca8f5dnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.