CVE-2023-27568 Information

Description

SQL injection vulnerability inSpryker Commerce OS 0.9 that allows for access to sensitive data via customer/order?orderSearchForm[searchText]=

Reference

https://www.schutzwerk.com/blog/schutzwerk-sa-2023-001/ https://www.schutzwerk.com/advisories/SCHUTZWERK-SA-2023-001.txt

Share on: