The Shopware e-commerce core
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-31889 shopware/platform is vulnerable to Authentication Bypass by Spoofing in versions 6.7.0.0 - 6.7.8.1 and 0.0.0 - 6.6.10.15. | 0.0.0 - 6.6.10.156.7.0.0 - 6.7.8.1 | High |
CVE-2026-31888 shopware/platform is vulnerable to Observable Response Discrepancy in versions 6.7.0.0 - 6.7.8.1 and 0.0.0 - 6.6.10.14. | 0.0.0 - 6.6.10.146.7.0.0 - 6.7.8.1 | Medium |
CVE-2025-7954 shopware/platform is vulnerable to Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in versions 0.0.0 - 6.6.10.4. | 0.0.0 - 6.6.10.4 | Medium |
CVE-2023-2017 shopware/platform is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 6.4.20.0. | 0.0.0 - 6.4.20.0 | High |
CVE-2023-22734 shopware/platform is vulnerable to Improper Input Validation in versions 0.0.0 - 6.4.18.0. | 0.0.0 - 6.4.18.0 | Medium |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0.0 | — | — |
psr/cache Version ^3.0.0 | — | — |
twig/twig Version ^3.21.1 | — | — |
nyholm/psr7 Version ^1.5 | — | — |
ramsey/uuid Version ^4.7 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant