CVE-2026-43642 | Softaculous Virtualizor up to 3.2.8 Billing unserialize act/from_billing_module/billing_data deserialization (Patch 9)
A vulnerability was found in Softaculous Virtualizor up to 3.2.8. It has been rated as very critical. The impacted element is the function unserialize of the component Billing Module Handler. The manipulation of the argument act/from_billing_module/billing_data leads to deserialization.
This vulnerability is traded as CVE-2026-43642. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More