CVE List

CVE-2022-24873

Moderate 6.1

Shopware is an open source e-commerce software platform. Prior to version 5.7.9, Shopware is vulnerable to non-stored cross-site scripting in the storefront. This issue is fixed in version 5.7.9. Users of older versions may attempt to mitigate the vulnerability by using the Shopware security plugin.

Published April 28, 2022.

Affected software

Get alerts for Shopware Shopware

Reference links