First published: Sat Mar 29 2025(Updated: )
ShopXO v6.4.0 is vulnerable to Server-Side Request Forgery (SSRF) in Email Settings.
Affected Software | Affected Version | How to fix |
---|---|---|
composer/shopxo/shopxo | <=6.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The GHSA-gfhv-5rqh-7qx3 vulnerability is categorized as a Server-Side Request Forgery (SSRF) issue in ShopXO v6.4.0.
To fix GHSA-gfhv-5rqh-7qx3, it is recommended to upgrade to a patched version of ShopXO beyond v6.4.0.
GHSA-gfhv-5rqh-7qx3 allows attackers to manipulate server requests, which could lead to unauthorized access to internal resources.
Yes, the GHSA-gfhv-5rqh-7qx3 vulnerability can be easily exploited by attackers with low skill levels.
The GHSA-gfhv-5rqh-7qx3 vulnerability specifically affects the Email Settings feature in ShopXO v6.4.0.