CVE-2024-44048: Wpwax Product Carousel Slider & Grid Ultimate For Woocommerce

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpWax Product Carousel Slider & Grid Ultimate for WooCommerce woo-product-carousel-slider-and-grid-ultimate.This issue affects Product Carousel Slider & Grid Ultimate for WooCommerce: from n/a through <= 1.9.10.

Affected products

  • Wpwax Product Carousel Slider & Grid Ultimate For Woocommerce: up to and including 1.9.10

Published 2024-09-23. Last modified 2026-06-17.