Vulnerabilities
2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2023-27568 | SQL injection vulnerability inSpryker Commerce OS 0.9 that allows for access to sensitive data via customer/order?orderSearchForm[searchText]= SQL injection vulnerability inSpryker Commerce OS 0.9 that allows for access to sensitive data via customer/order?orderSearchForm[searchText]= NVD description · AI analysis pending | 8.8 | 1% | PoC ×4 |
| — | |
| CVE-2022-28888 | Spryker Commerce OS 1.4.2 allows Remote Command Execution. Spryker Commerce OS 1.4.2 allows Remote Command Execution. NVD description · AI analysis pending | 9.8 | 5% | PoC ×3 |
| — |