Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-94930
HistoryAug 17, 2021 - 12:00 a.m.

Shopware Cross-Site Scripting Vulnerability (CNVD-2021-94930)

2021-08-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
7

0.001 Low

EPSS

Percentile

19.4%

Shopware is an open source e-commerce software. cross-site scripting vulnerability exists in versions of Shopware prior to 6.4.3.1. An attacker can exploit the vulnerability to conduct cross-site scripting attacks via SVG media files.

CPENameOperatorVersion
Shopware Shopware <6.eq4.3.1

0.001 Low

EPSS

Percentile

19.4%

Related for CNVD-2021-94930