First published: Thu Jun 24 2021(Updated: )
Shopware is an open source eCommerce platform. Potential session hijacking of store customers in versions below 6.3.5.2. We recommend to update to the current version 6.3.5.2. You can get the update to 6.3.5.2 regularly via the Auto-Updater or directly via the download overview. For older versions of 6.1 and 6.2, corresponding security measures are also available via a plugin. For the full range of functions, we recommend updating to the latest Shopware version.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
Shopware Shopware | <6.3.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Shopware vulnerability is CVE-2021-32710.
The severity of CVE-2021-32710 is high with a CVSS score of 7.5.
The affected software version is below 6.3.5.2.
To fix this vulnerability, it is recommended to update Shopware to version 6.3.5.2 or above.
You can find more information about this vulnerability on the GitHub page of Shopware.