Unauthenticated SQL Injection in ReadyEcommerce by CodeCanyon
CVE-2026-63106

9.3CRITICAL

Key Information:

Vendor

Razinsoft

Vendor
CVE Published:
10 August 2026

What is CVE-2026-63106?

ReadyEcommerce prior to version 4.5.2 is vulnerable to an unauthenticated SQL injection through the product listing API. The vulnerability arises from unsanitized input in the rating parameter, which is directly concatenated into a MySQL HAVING clause. This flaw allows attackers to execute time-based blind SQL injection attacks, potentially exposing sensitive data such as user credentials and administrator password hashes. Since the database connection operates with root privileges, there is also a risk of unauthorized file system access.

Affected Version(s)

Ready eCommerce 0

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Alfaz Hossain
.