Known Vulnerabilities for Platform by Shopware
Listed below are 10 of the newest known vulnerabilities associated with "Platform" by "Shopware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103288 json | Ghost, an open-source publishing platform, contains an input validation flaw in its comment like feature in versions from 5.9... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102677 json | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. From 42.3.3 until 42.... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102676 json | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 41.10.6, 42.... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102675 json | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 41.10.6, 42.... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102674 json | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 41.10.6, 42.... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102673 json | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 41.10.4, 42.... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102600 json | Socket.IO enables bidirectional and low-latency communication for every platform. Prior to 0.1.1, @socket.io/cluster-engine u... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102150 json | A function in the Kiteworks Advanced Forms component was reachable without authentication. An unauthenticated attacker could ... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102134 json | Kiteworks Core did not apply its gateway-level API security controls to every request authenticated through the platform's ce... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102128 json | An identity-verification weakness in Kiteworks Email Protection Gateway allowed the gateway to act on the Kiteworks platform ... | Not Provided | 2026-09-30 | 2026-10-01 |