CVE-2020-20508
24.09.2021, 22:15
Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.
Vendor | Product | Version |
---|---|---|
shopkit_project | shopkit | 2.7 |
𝑥
= Vulnerable software versions