Vulnerabilities (CVE)

Filtered by vendor Cubecart Subscribe
Filtered by product Cubecart
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-38130 1 Cubecart 1 Cubecart 2023-11-22 N/A 8.1 HIGH
Cross-site request forgery (CSRF) vulnerability in CubeCart prior to 6.5.3 allows a remote unauthenticated attacker to delete data in the system.
CVE-2023-47675 1 Cubecart 1 Cubecart 2023-11-22 N/A 7.2 HIGH
CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrative privilege to execute an arbitrary OS command.