![]() |
VOOZH | about |
OroCommerce - an open-source Business to Business Commerce application. \nThis package contains bundles and needs to be added as a dependency in an OroCommerce application.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2023-32065 oro/commerce is vulnerable to Improper Access Control in versions 4.2.0 - 4.2.10, 5.0.0 - 5.0.11 and 5.1.0 - 5.1.1. | 4.2.0 - 4.2.105.0.0 - 5.0.115.1.0 - 5.1.1 | Medium |
CVE-2022-35950 oro/commerce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 4.1.0 - 4.1.13, 4.2.0 - 4.2.10, 5.0.0 - 5.0.11 and 5.1.0 - 5.1.1. | 4.1.0 - 4.1.134.2.0 - 4.2.105.0.0 - 5.0.11 +1 more | Medium |
CVE-2022-31037 oro/commerce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 4.1.0 - 5.0.6. | 4.1.0 - 5.0.6 | Medium |
100%
Total Score
100
100
100
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.