CNNVD-202510-4236 Information

CNNVD ID

CNNVD-202510-4236

CVE-2025-10317

  • CNNVD Published: 2025-10-30

Description (Chinese)

OpenSolution Quick.Cart是波兰OpenSolution公司的一个网上商店系统。 OpenSolution Quick.Cart 6.7版本存在跨站请求伪造漏洞,该漏洞源于产品创建功能缺少跨站请求伪造防护,可能导致恶意产品创建。

Description (English)

OpenSolution Quick.Cart is an online shop system for Polish OpenSolution. Version 6.7 of OpenSolution Quick.Cart contains a breach of cross-site requests for forgery, which stems from the lack of cross-site requests for protection against the creation of products, which may lead to the creation of malicious products.

Hazard Level

High

Vulnerability Type

跨站请求伪造

Affected Vendor

OpenSolution

Published

2025-10-30

Last Modified

2026-02-24

References

https://cert.pl/posts/2025/10/CVE-2025-10317 https://opensolution.org/sklep-internetowy-quick-cart.html

Share on: