Vulnerability Database

With exploit

Composer icon shopware / platform

Title Severity Exploit Date Affected Version
Creation of order credits was not validated by acl in admin orders Low Jun 28, 2021 < 6.4.1.1
Canceling of orders not related to the logged-in user Medium Jun 28, 2021 < 6.4.1.1
CVE-2021-32716 Low Jun 24, 2021 < 6.4.1.1
CVE-2021-32717 High Jun 24, 2021 < 6.4.1.1
CVE-2021-32711 High Jun 24, 2021 < 6.3.5.1
CVE-2021-32710 High Jun 24, 2021 < 6.3.5.2
CVE-2021-32709 Low Jun 24, 2021 < 6.4.1.1
After order payment process manipulation in shopware/platform and shopware/core Critical Apr 13, 2021 < 6.3.5.3
Leak of information via Store-API aggregations in shopware/platform and shopware/core Critical Apr 13, 2021 < 6.3.5.3
Authenticated remote code execution Medium Mar 12, 2021 < 6.3.5.2