pimcore/ecommerce-framework-bundle

pimcore/ecommerce-framework-bundle

Releases31
Frequency1 month 1 day
Last Release
Stars14
Ecommerce Framework community bundle provides e-commerce functionality such as product listing and filtering, pricing, carts and checkouts for Pimcore.

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM

ecommerce-framework-bundle is the Pimcore Ecommerce Framework Bundle. An authenticated and unauthorized user can access the back-office orders list and be able to query over the information returned. Access control and permissions are not being enforced. This vulnerability has been patched in version 1.0.10.