The Shopware e-commerce core
97%
Total Score
90
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-48016 shopware/platform is vulnerable to Authentication Bypass by Spoofing in versions 6.7.0.0 - 6.7.10.1 and 0.0.0 - 6.6.10.18. | 0.0.0 - 6.6.10.186.7.0.0 - 6.7.10.1 | |
CVE-2026-48014 shopware/platform is vulnerable to Missing Authorization in versions 6.7.0.0 - 6.7.10.1 and 0.0.0 - 6.6.10.18. | 0.0.0 - 6.6.10.186.7.0.0 - 6.7.10.1 | |
CVE-2026-48011 shopware/platform is vulnerable to Observable Timing Discrepancy in versions 6.7.0.0 - 6.7.10.1 and 0.0.0 - 6.6.10.18. | 0.0.0 - 6.6.10.186.7.0.0 - 6.7.10.1 | |
CVE-2026-48010 shopware/platform is vulnerable to Improper Privilege Management in versions 6.7.0.0 - 6.7.10.1 and 0.0.0 - 6.6.10.18. | 0.0.0 - 6.6.10.186.7.0.0 - 6.7.10.1 | |
CVE-2026-48009 shopware/platform is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 6.7.0.0 - 6.7.10.1 and 0.0.0 - 6.6.10.18. | 0.0.0 - 6.6.10.186.7.0.0 - 6.7.10.1 |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0.0 | — | — |
psr/cache Version ^3.0.0 | — | — |
twig/twig Version ^3.26.0 | — | — |
nyholm/psr7 Version ^1.5 | — | — |
ramsey/uuid Version ^4.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant