Vulnerabilities > Zendrop
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-20 | CVE-2023-25970 | Unrestricted Upload of File with Dangerous Type vulnerability in Zendrop 1.0.0 Unrestricted Upload of File with Dangerous Type vulnerability in Zendrop Zendrop – Global Dropshipping.This issue affects Zendrop – Global Dropshipping: from n/a through 1.0.0. | 9.8 |
2023-11-03 | CVE-2023-25960 | SQL Injection vulnerability in Zendrop 1.0.0 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zendrop Zendrop – Global Dropshipping zendrop-dropshipping-and-fulfillment allows SQL Injection.This issue affects Zendrop – Global Dropshipping: from n/a through 1.0.0. | 9.8 |