Cross-Site Scripting Vulnerability in Easy Cart Shopping Cart 2021 by Easy Cart
CVE-2021-47856
Key Information:
- Vendor
Netart Media
- Status
- Vendor
- CVE Published:
- 1 February 2026
Badges
What is CVE-2021-47856?
The Easy Cart Shopping Cart 2021 application is vulnerable to a non-persistent cross-site scripting (XSS) attack in the search module's keyword parameter. This vulnerability allows remote attackers to inject malicious script code through the search input, potentially compromising user sessions and manipulating application content. Such exploits can lead to unauthorized actions being performed on behalf of the users, posing significant security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Easy Cart Shopping Cart 2021
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
