CVE-2023-22730
The Cart Validators checked the line item's individuality and the user was able to bypass quantity limits in sales.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.66%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Shopware is an open source commerce platform based on Symfony Framework and Vue js. In affected versions It was possible to put the same line item multiple times in the cart using the AP. The Cart Validators checked the line item's individuality and the user was able to bypass quantity limits in sales. This problem has been fixed with version 6.4.18.1. Users on major versions 6.1, 6.2, and 6.3 may also obtain this fix via a plugin.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
- EPSS
- 0.66% probability · 50th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- shopware/shopware
- Source
- security-advisories@github.com
References
- https://docs.shopware.com/en/shopware-6-en/security-updates/security-update-01-2023?category=security-updatesPatch, Vendor Advisory
- https://github.com/shopware/platform/commit/4fce12096e54b2033832d9104fa2e68888c2b4e9Patch, Third Party Advisory
- https://github.com/shopware/platform/security/advisories/GHSA-8r6h-m72v-38fgThird Party Advisory
- https://docs.shopware.com/en/shopware-6-en/security-updates/security-update-01-2023?category=security-updatesPatch, Vendor Advisory
- https://github.com/shopware/platform/commit/4fce12096e54b2033832d9104fa2e68888c2b4e9Patch, Third Party Advisory
- https://github.com/shopware/platform/security/advisories/GHSA-8r6h-m72v-38fgThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.