Vulnerabilities > Shopware > Shopware > 5.0.3

DATE CVE VULNERABILITY TITLE RISK
2021-08-16 CVE-2021-37710 Cross-site Scripting vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
shopware CWE-79
3.5
2021-08-16 CVE-2021-37709 Authorization Bypass Through User-Controlled Key vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-639
4.0
2021-06-24 CVE-2021-32712 Information Exposure Through an Error Message vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-209
5.0
2021-06-24 CVE-2021-32713 Cross-site Scripting vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
shopware CWE-79
3.5
2021-06-24 CVE-2021-32710 Session Fixation vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-384
5.0
2021-06-24 CVE-2021-32711 Information Exposure vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-200
5.0
2021-06-24 CVE-2021-32709 Missing Authentication for Critical Function vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-306
4.0
2020-07-28 CVE-2020-13997 Insufficiently Protected Credentials vulnerability in Shopware
In Shopware before 6.2.3, the database password is leaked to an unauthenticated user when a DriverException occurs and verbose error handling is enabled.
network
low complexity
shopware CWE-522
5.0
2020-07-28 CVE-2020-13971 Cross-site Scripting vulnerability in Shopware
In Shopware before 6.2.3, authenticated users are allowed to use the Mediabrowser fileupload feature to upload SVG images containing JavaScript.
network
shopware CWE-79
3.5
2020-07-28 CVE-2020-13970 Server-Side Request Forgery (SSRF) vulnerability in Shopware
Shopware before 6.2.3 is vulnerable to a Server-Side Request Forgery (SSRF) in its "Mediabrowser upload by URL" feature.
network
low complexity
shopware CWE-918
6.5