CVE-2021-32713
Summary
| CVE | CVE-2021-32713 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-24 21:15:00 UTC |
| Updated | 2021-07-01 19:36:00 UTC |
| Description | Shopware is an open source eCommerce platform. Versions prior to 5.6.10 suffer from an authenticated stored XSS in administration vulnerability. Users are recommend to update to the version 5.6.10. You can get the update to 5.6.10 regularly via the Auto-Updater or directly via the download overview. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Authenticated Stored XSS in Administration · Advisory · shopware/shopware · GitHub | CONFIRM | github.com | |
| Merge branch 'sw-26050/5.6/dev' into '5.6' · shopware/shopware@a0850ff · GitHub | MISC | github.com | |
| Shopware 5 - Security Updates - Security Update 05/2021 | MISC | docs.shopware.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.