CVE-2026-49777: exploitation status and patch state

CVE-2026-49777 · CVSS 10.0 CRITICAL · EPSS 2%

Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Implanted. This issue affects Product Slider Pro for WooCommerce: from n/a before 3.5.4.

Is CVE-2026-49777 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2026-49777

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-11.