| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-24426 | Adobe Commerce | Improper Access Control (CWE-284) | Adobe | Adobe Commerce | Medium | 6.5 | 2025-02-11 17:37:35 | Deep Dive |
| CVE-2025-24428 | Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) | Adobe | Adobe Commerce | Medium | 5.4 | 2025-02-11 17:37:34 | Deep Dive |
| CVE-2025-24410 | Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) | Adobe | Adobe Commerce | High | 8.7 | 2025-02-11 17:37:33 | Deep Dive |
| CVE-2025-24408 | Adobe Commerce | Information Exposure (CWE-200) | Adobe | Adobe Commerce | Medium | 6.5 | 2025-02-11 17:37:32 | Deep Dive |
| CVE-2025-24435 | Adobe Commerce | Improper Access Control (CWE-284) | Adobe | Adobe Commerce | Medium | 4.3 | 2025-02-11 17:37:31 | Deep Dive |
| CVE-2025-24875 | SameSite Defense in Depth not applied for some cookies in SAP Commerce | SAP_SE | SAP Commerce | Medium | 6.8 | 2025-02-11 00:37:32 | Deep Dive |
| CVE-2025-24874 | Missing Defense in Depth Against Clickjacking in SAP Commerce Backoffice | SAP_SE | SAP Commerce (Backoffice) | Medium | 6.8 | 2025-02-11 00:37:23 | Deep Dive |
| CVE-2024-13257 | Commerce View Receipt - Moderately critical - Access bypass - SA-CONTRIB-2024-021 | Drupal | Commerce View Receipt | 中危 | - | 2025-01-09 19:04:57 | Deep Dive |
| CVE-2024-13205 | kurniaramadhan E-Commerce-PHP Create Product Page create_product.php cross site scripting | kurniaramadhan | E-Commerce-PHP | Low | 2.4 | 2025-01-09 02:31:05 | Deep Dive |
| CVE-2024-13204 | kurniaramadhan E-Commerce-PHP blog-details.php sql injection | kurniaramadhan | E-Commerce-PHP | Medium | 5.5 | 2025-01-09 02:00:18 | Deep Dive |
| CVE-2024-13203 | kurniaramadhan E-Commerce-PHP cross-site request forgery | kurniaramadhan | E-Commerce-PHP | Medium | 4.3 | 2025-01-09 02:00:16 | Deep Dive |
| CVE-2025-22339 | WordPress Store Commerce theme <= 1.2.3 - Cross Site Scripting (XSS) vulnerability | athemeart | Store Commerce | Medium | 6.5 | 2025-01-07 10:48:45 | Deep Dive |
| CVE-2024-12884 | Codezips E-Commerce Website login.php sql injection | Codezips | E-Commerce Website | High | 7.3 | 2024-12-21 14:00:10 | Deep Dive |
| CVE-2024-12794 | Codezips E-Commerce Site editorder.php sql injection | Codezips | E-Commerce Site | Medium | 6.3 | 2024-12-19 18:00:20 | Deep Dive |
| CVE-2024-12792 | Codezips E-Commerce Site newadmin.php sql injection | Codezips | E-Commerce Site | High | 7.3 | 2024-12-19 17:31:12 | Deep Dive |
| CVE-2024-12791 | Codezips E-Commerce Site signin.php sql injection | Codezips | E-Commerce Site | High | 7.3 | 2024-12-19 17:31:10 | Deep Dive |
| CVE-2024-54250 | WordPress Prodigy Commerce plugin <= 3.0.8 - Cross Site Scripting (XSS) vulnerability | prodigycommerce | Prodigy Commerce | Medium | 6.5 | 2024-12-13 14:24:39 | Deep Dive |
| CVE-2024-47577 | Information Disclosure vulnerability in SAP Commerce Cloud | SAP_SE | SAP Commerce Cloud | Low | 2.7 | 2024-12-10 00:11:50 | Deep Dive |
| CVE-2024-54251 | WordPress Prodigy Commerce plugin <= 3.1.2 - Broken Access Control vulnerability | prodigycommerce | Prodigy Commerce | Medium | 6.5 | 2024-12-09 11:32:29 | Deep Dive |
| CVE-2024-52462 | WordPress WP e-Commerce Style Email plugin <= 0.6.2 - Reflected Cross Site Scripting (XSS) vulnerability | Jacob Schwartz | WP e-Commerce Style Email | High | 7.1 | 2024-12-02 13:49:04 | Deep Dive |