CVE-2024-23512: Wpxpo Wowstore

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Deserialization of Untrusted Data vulnerability in wpxpo ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks.This issue affects ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks: from n/a through 3.1.4.

Affected products

  • Wpxpo Wowstore: before 3.1.5 (fixed in 3.1.5)

Published 2024-02-12. Last modified 2026-06-17.