N/A
2026-02-17< 3.1.9.7
Advanced AJAX Product Filters <= 3.1.9.6 - Authenticated (Author+) PHP Object Injection via Live Composer Compatibility
Minimum safe version
3.1.9.7
Update to 3.1.9.7 or later to address 7 fixable vulnerabilities
Advanced AJAX Product Filters <= 3.1.9.6 - Authenticated (Author+) PHP Object Injection via Live Composer Compatibility
WordPress Advanced AJAX Product Filters Plugin <= 1.6.8.1 is vulnerable to Cross Site Scripting (XSS)
Advanced AJAX Product Filters < 1.3.7 - Unauthenticated Plugin Settings Update
WordPress Advanced AJAX Product Filters Plugin <= 1.6.3.3 is vulnerable to Broken Access Control
WooCommerce AJAX Product Filters <= 1.3.6 - Arbitrary Settings Update
WordPress Advanced AJAX Product Filters plugin <= 1.3.6.1 - Unauthenticated Plugin Settings Update vulnerability
CVE-2021-24432