CVE-2023-36235 Information

Description

An issue in webkul qloapps before v1.6.0 allows an attacker to obtain sensitive information via the id_order parameter.

Reference

https://qloapps.com/ https://github.com/webkul/hotelcommerce/pull/537 https://github.com/Ek-Saini/security/blob/main/IDOR-Qloapps

Share on: