Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-58442

Опубликовано: 09 сент. 2025
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

Saleor is an e-commerce platform. Starting in version 3.21.0 and prior to version 3.21.16, requesting certain fields in the response of accountRegister may result in errors that could unintentionally reveal whether a user with the provided email already exists in Saleor. Version 3.21.16 fixes the issue. As a workaround, rate-limit the mutation to reduce the impact.

EPSS

Процентиль: 17%
0.00053
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-204

EPSS

Процентиль: 17%
0.00053
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-204