CVE-2021-32713: Authenticated Stored XSS
Shopware is an open source eCommerce platform. Versions prior to 5.6.10 suffer from an authenticated stored XSS in administration vulnerability. Users are recommend to update to the version 5.6.10. You can get the update to 5.6.10 regularly via the Auto-Updater or directly via the download overview.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-32713?
CVE-2021-32713 is an authenticated stored XSS vulnerability in Shopware eCommerce platform versions prior to 5.6.10.
How severe is CVE-2021-32713?
CVE-2021-32713 has a severity rating of 4.8, which is considered medium.
How can I fix CVE-2021-32713?
To fix CVE-2021-32713, users are recommended to update to version 5.6.10 of Shopware.
What is Shopware?
Shopware is an open source eCommerce platform.
What is the CWE for CVE-2021-32713?
The CWE (Common Weakness Enumeration) for CVE-2021-32713 is CWE-79, which is the category for Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').