Vulnerabilities (CVE)

Filtered by vendor Shopkit Project Subscribe
Filtered by product Shopkit
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-20508 1 Shopkit Project 1 Shopkit 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.