The Shopware e-commerce core
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-7954 shopware/platform is vulnerable to Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in versions 0.0.0 - 6.6.10.4. | 0.0.0 - 6.6.10.4 | Medium |
CVE-2023-2017 shopware/platform is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 6.4.20.0. | 0.0.0 - 6.4.20.0 | High |
CVE-2023-22734 shopware/platform is vulnerable to Improper Input Validation in versions 0.0.0 - 6.4.18.0. | 0.0.0 - 6.4.18.0 | Medium |
CVE-2023-22732 shopware/platform is vulnerable to Insufficient Session Expiration in versions 0.0.0 - 6.4.18.0. | 0.0.0 - 6.4.18.0 | Low |
CVE-2023-22733 shopware/platform is vulnerable to Improper Output Neutralization for Logs in versions 0.0.0 - 6.4.18.0. | 0.0.0 - 6.4.18.0 | Low |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0.0 | — | — |
psr/cache Version ^3.0.0 | — | — |
twig/twig Version ^3.21.1 | — | — |
nyholm/psr7 Version ^1.5 | — | — |
ramsey/uuid Version ^4.7 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant