Authentication Flaw in Quick.Cart by Opensolution
CVE-2026-41874
6.8MEDIUM
What is CVE-2026-41874?
Quick.Cart contains a security vulnerability where hard-coded, plaintext admin credentials are stored in a configuration file. This issue can be exploited by an attacker with access to the server's file system, allowing them to retrieve sensitive authentication details. The exposure of these credentials poses a risk of privilege escalation, as malicious actors may gain unauthorized administrative access to the application.
Affected Version(s)
Quick.Cart 0 <= 6.7
