Cross-Site Scripting Vulnerability in Shopware by Shopware AG
CVE-2022-48150
6.1MEDIUM
Key Information:
Badges
👾 Exploit Exists
What is CVE-2022-48150?
Shopware v5.5.10 is susceptible to a cross-site scripting (XSS) vulnerability, which can be exploited via the recovery/install/ URI. This weakness can allow attackers to inject malicious scripts into the web application, potentially compromising user data and security. Organizations using affected versions are encouraged to implement security measures to mitigate the risks associated with this vulnerability.