Threats Tagged 'cve-2026-106606'
View all threats tagged with 'cve-2026-106606'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-106606'
Click on any threat for detailed analysis and mitigation recommendations
A deserialization of untrusted data vulnerability (CWE-502) exists in YITH WooCommerce Affiliates plugin versions up to 3.31.0. This vulnerability allows object injection, which can lead to high impact on confidentiality, integrity, and availability. The CVSS 3.1 base score is 7.2, indicating a high severity issue. No patch or remediation details are provided in the available data. Join the discussion | GCVE Database | 10/10/2026, 09:30:28 UTC Added: 10/10/2026, 21:26:59 UTC |
0 CVE-2026-106606 is a high severity vulnerability in YITH WooCommerce Affiliates plugin allowing deserialization of untrusted data, leading to object injection. It affects versions from initial releases up to 3.31.0. The vulnerability can result in complete compromise of confidentiality, integrity, and availability. No explicit patch or remediation details are provided in the source data. Join the discussion | CVE Database V5 | 10/10/2026, 07:00:33 UTC Added: 10/10/2026, 07:18:59 UTC |
Showing 1 to 2 of 2 results