Vulnerabilities (CVE)

Filtered by vendor Zendrop Subscribe
Filtered by product Zendrop
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-25970 1 Zendrop 1 Zendrop 2024-02-28 N/A 9.8 CRITICAL
Unrestricted Upload of File with Dangerous Type vulnerability in Zendrop Zendrop – Global Dropshipping.This issue affects Zendrop – Global Dropshipping: from n/a through 1.0.0.
CVE-2023-25960 1 Zendrop 1 Zendrop 2024-02-28 N/A 9.8 CRITICAL
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zendrop Zendrop – Global Dropshipping zendrop-dropshipping-and-fulfillment allows SQL Injection.This issue affects Zendrop – Global Dropshipping: from n/a through 1.0.0.