Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-103572
HistoryOct 28, 2021 - 12:00 a.m.

Shopware Cross-Site Scripting Vulnerability (CNVD-2021-103572)

2021-10-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

31.7%

Shopware is a suite of open source e-commerce software from the German company Shopware.Shopware in versions prior to 5.7.6 suffers from a cross-site scripting vulnerability that stems from the lack of proper validation of client-side data by the WEB application. An attacker could exploit the vulnerability to execute JavaScript code on the client side.

CPENameOperatorVersion
shopware shopwarelt5.7.6

0.001 Low

EPSS

Percentile

31.7%

Related for CNVD-2021-103572