All 3 CVE vulnerabilities found in next-saas-stripe-starter, with AI-generated Chinese analysis, references, and POCs.
Vendor: mickasmt
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-4549 | mickasmt next-saas-stripe-starter Stripe API open-customer-portal.ts openCustomerPortal authorization CWE-639 | 3.1 | Low | 2026-03-22 |
| CVE-2026-4548 | mickasmt next-saas-stripe-starter update-user-role.ts updateUserrole improper authorization CWE-285 | 6.3 | Medium | 2026-03-22 |
| CVE-2026-4547 | mickasmt next-saas-stripe-starter Checkout generate-user-stripe.ts generateUserStripe logic error CWE-840 | 4.3 | Medium | 2026-03-22 |
All 3 known CVE vulnerabilities affecting next-saas-stripe-starter with full Chinese analysis, references, and POCs where available.