Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vw3f-8r5j-7wqm

Опубликовано: 16 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.

A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.

EPSS

Процентиль: 50%
0.0027
Низкий

7.5 High

CVSS3

Дефекты

CWE-190