📦 Smartstore

by Smartstore

🔍 What is Smartstore?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-32607

CRITICAL CVSS 9.8 May 12, 2021

This is a stored cross-site scripting (XSS) vulnerability in SmartStoreNET's private messaging feature. Attackers can inject malicious scripts into private messages that execute when viewed by adminis...

CVE-2021-32608

CRITICAL CVSS 9.8 May 12, 2021

This vulnerability allows attackers to inject malicious HTML/JavaScript into forum posts in SmartStoreNET e-commerce platforms. When exploited, it enables cross-site scripting (XSS) attacks that can l...

CVE-2020-15243

CRITICAL CVSS 9.1 Oct 8, 2020

This CVE describes an authentication bypass vulnerability in Smartstore Web API due to a missing authentication attribute. Attackers can access administrative API endpoints without credentials, potent...