CVE-2024-36694
Published
CVSS v3
7.2
HIGH
CVSS v2
N/A
Affected
2
PROJECTS
Description
OpenCart 4.0.2.3 is vulnerable to Server-Side Template Injection (SSTI) via the Theme Editor Function.
A free shopping cart system. OpenCart is an open source PHP-based online e-commerce solution.