📦 Saleor

by Saleor

🔍 What is Saleor?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-24136

HIGH CVSS 7.5 Jan 24, 2026

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in Saleor e-commerce platform that allows unauthenticated attackers to access sensitive order information in plain text. The...

CVE-2026-22849

MEDIUM CVSS 4.8 Jan 21, 2026

This stored cross-site scripting (XSS) vulnerability in Saleor e-commerce platform allows malicious staff members to inject HTML/JavaScript into rich text fields. The injected scripts execute when oth...

CVE-2026-23499

MEDIUM CVSS 5.4 Jan 21, 2026

This vulnerability allows authenticated staff users or apps in Saleor e-commerce platform to upload malicious HTML/SVG files containing JavaScript. When these files are served from the same domain as ...