Miggo Logo

CVE-2022-31057: Authenticated Stored Cross-site Scripting in Shopware

5.4

CVSS Score
3.1

Basic Information

EPSS Score
0.60445%
Published
6/22/2022
Updated
1/27/2023
KEV Status
No
Technology
TechnologyPHP

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
shopware/shopwarecomposer< 5.7.125.7.12

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

### Imp**t *ut**nti**t** Stor** XSS in **ministr*tion ### P*t***s W* r**omm*n* up**tin* to v*rsion *.*.**. You **n **t t** up**t* to *.*.** r**ul*rly vi* t** *uto-Up**t*r or *ir**tly vi* t** *ownlo** ov*rvi*w. *ttps://www.s*opw*r*.*om/**/***n**lo*-s

Reasoning

No *n*lysis *v*il**l*