Lucene search

K

Shopware Security Vulnerabilities

cve
cve

CVE-2024-27917

Shopware is an open commerce platform based on Symfony Framework and Vue. The Symfony Session Handler pops the Session Cookie and assigns it to the Response. Since Shopware 6.5.8.0, the 404 pages are cached to improve the performance of 404 pages. So the cached Response which contains a Session Coo...

7.5CVSS

7.5AI Score

0.0004EPSS

2024-03-06 08:15 PM
48
cve
cve

CVE-2024-31447

Shopware 6 is an open commerce platform based on Symfony Framework and Vue. Starting in version 6.3.5.0 and prior to versions 6.6.1.0 and 6.5.8.8, when a authenticated request is made to POST /store-api/account/logout, the cart will be cleared, but the User won't be logged out. This affects only th...

5.3CVSS

5.1AI Score

0.0004EPSS

2024-04-08 04:15 PM
34
Total number of security vulnerabilities52