shopware/shopware is vulnerable to open redirects. The vulnerability exists in onRouteStartup
function of Bootstrap.php
because the redirect parameter is not properly checked which allows a malicious attacker to launch phishing scam and steal credentials by redirecting to untrusted sites.
CPE | Name | Operator | Version |
---|---|---|---|
shopware/shopware | le | v5.7.6 | |
shopware/shopware | le | v5.7.6 |