| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-0391 | MGT-COMMERCE CloudPanel Shared Certificate | MGT-COMMERCE | CloudPanel | 高危 | - | 2023-03-21 19:25:26 | Deep Dive |
| CVE-2023-1507 | SourceCodester E-Commerce System Category Name controller.php cross site scripting | SourceCodester | E-Commerce System | Low | 3.5 | 2023-03-20 10:00:04 | Deep Dive |
| CVE-2023-1506 | SourceCodester E-Commerce System login.php sql injection | SourceCodester | E-Commerce System | Medium | 5.6 | 2023-03-20 09:31:04 | Deep Dive |
| CVE-2023-1505 | SourceCodester E-Commerce System setDiscount.php sql injection | SourceCodester | E-Commerce System | Medium | 5.0 | 2023-03-20 09:00:06 | Deep Dive |
| CVE-2023-1504 | SourceCodester Alphaware Simple E-Commerce System sql injection | SourceCodester | Alphaware Simple E-Commerce System | Medium | 5.6 | 2023-03-20 08:31:04 | Deep Dive |
| CVE-2023-1503 | SourceCodester Alphaware Simple E-Commerce System admin_index.php sql injection | SourceCodester | Alphaware Simple E-Commerce System | Medium | 5.6 | 2023-03-20 08:00:06 | Deep Dive |
| CVE-2023-1502 | SourceCodester Alphaware Simple E-Commerce System edit_customer.php sql injection | SourceCodester | Alphaware Simple E-Commerce System | Medium | 5.6 | 2023-03-20 08:00:05 | Deep Dive |
| CVE-2023-0998 | SourceCodester Alphaware Simple E-Commerce System Payment summary.php access control | SourceCodester | Alphaware Simple E-Commerce System | Medium | 6.5 | 2023-02-24 07:32:03 | Deep Dive |
| CVE-2023-0997 | SourceCodester Moosikay E-Commerce System POST Parameter order.php sql injection | SourceCodester | Moosikay E-Commerce System | High | 7.3 | 2023-02-24 07:29:23 | Deep Dive |
| CVE-2022-4655 | Welcart e-Commerce < 2.8.9 - Contributor+ Stored XSS via Shortcode | Unknown | Welcart e-Commerce | 中危 | - | 2023-01-16 15:37:56 | Deep Dive |
| CVE-2022-4237 | Welcart e-Commerce < 2.8.6 - Subscriber+ PHAR Deserialisation | Unknown | Welcart e-Commerce | 高危 | - | 2023-01-02 21:49:41 | Deep Dive |
| CVE-2022-4236 | Welcart e-Commerce < 2.8.5 - Subscriber+ Arbitrary File Access | Unknown | Welcart e-Commerce | 中危 | - | 2023-01-02 21:49:30 | Deep Dive |
| CVE-2022-4140 | Welcart e-Commerce < 2.8.5 - Unauthenticated Arbitrary File Access | Unknown | Welcart e-Commerce | 高危 | - | 2023-01-02 21:49:13 | Deep Dive |
| CVE-2022-41266 | SAP Commerce跨站脚本漏洞 | SAP | Commerce Webservices 2.0 (Swagger UI) | High | 8.0 | 2022-12-13 02:34:12 | Deep Dive |
| CVE-2022-3946 | Welcart e-Commerce < 2.8.4 - Subscriber+ Arbitrary Shipping Method Creation/Update/Deletion | Unknown | Welcart e-Commerce | 中危 | - | 2022-12-12 17:54:56 | Deep Dive |
| CVE-2022-3935 | Welcart e-Commerce < 2.8.4 - Multiple Subscriber+ Stored Cross-Site Scripting | Unknown | Welcart e-Commerce | 中危 | - | 2022-12-12 17:54:42 | Deep Dive |
| CVE-2022-41840 | WordPress Welcart eCommerce plugin <= 2.7.7 - Unauth. Directory Traversal vulnerability | Collne Inc. | Welcart e-Commerce (WordPress plugin) | High | 7.5 | 2022-11-18 18:27:06 | Deep Dive |
| CVE-2022-38656 | HCL Commerce, when using Elasticsearch, could be affected by a denial of service vulnerability | HCL Software | HCL Commerce | High | 8.6 | 2022-11-04 20:58:48 | Deep Dive |
| CVE-2022-42344 | [CVE-2021-36032] Magento IDOR Leads to Account Takeover | Adobe | Adobe Commerce | High | 8.8 | 2022-10-20 16:28:18 | Deep Dive |
| CVE-2022-35689 | Adobe Commerce Improper Access Control Security feature bypass | Adobe | Magento Commerce | Medium | 5.3 | 2022-10-14 19:48:17 | Deep Dive |