CVE-2026-22480: WordPress Product Feed for WooCommerce plugin <= 2.3.3 - PHP Object Injection vulnerability
Published Mar 25, 2026
·Updated
Deserialization of Untrusted Data vulnerability in WebToffee Product Feed for WooCommerce webtoffee-product-feed allows Object Injection.This issue affects Product Feed for WooCommerce: from n/a through <= 2.3.3.
Affected Software
1 affected component
WebToffee Product Feed for WooCommerce<=2.3.3
Event History
Mar 25, 2026
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness