Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-56128
HistoryAug 04, 2022 - 12:00 a.m.

Shopware Cross-Site Scripting Vulnerability (CNVD-2022-56128)

2022-08-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

25.8%

Shopware is a set of open source e-commerce software from the German company Shopware.Shopware suffers from a cross-site scripting vulnerability, which stems from a lack of data validation filtering of user-supplied data and output in the client module. An attacker could exploit the vulnerability to execute JavaScript code on the client side.

CPENameOperatorVersion
Shopware Shopware >=5.7.0,lt5.7.14

0.001 Low

EPSS

Percentile

25.8%