Browse Security Advisories
High Security Advisories for shopware/platform Clear Filters
High
6 months ago
Shopware Vulnerable to Blind SQL-injection in DAL aggregations
packagist
shopware/platform, shopware/core
High
6 months ago
Shopware allows Denial Of Service via password length
packagist
shopware/platform, shopware/core
High
about 1 year ago
Shopware vulnerable to Server Side Template Injection in Twig using Context functions
packagist
shopware/core, shopware/platform
High
about 1 year ago
Shopware vulnerable to Server Side Template Injection in Twig using deprecation silence tag
packagist
shopware/core, shopware/platform
High
over 2 years ago
Improper Control of Generation of Code in Twig rendered views
packagist
shopware/core, shopware/platform
High
over 3 years ago
Shopware database password is leaked to an unauthenticated users
packagist
shopware/platform, shopware/core
High
over 3 years ago
Improper Access Control in Shopware
packagist
shopware/core, shopware/platform
High
over 3 years ago
Server-Side Request Forgery (SSRF) in Shopware
packagist
shopware/core, shopware/platform
High
about 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor
packagist
shopware/platform
High
about 4 years ago
Command injection in mail agent settings
packagist
shopware/core, shopware/platform
High
about 4 years ago
Cross-Site Scripting via SVG media files
packagist
shopware/platform, shopware/core
High
about 4 years ago
Authenticated server-side request forgery in file upload via URL.
packagist
shopware/core, shopware/platform
High
over 4 years ago
Private files publicly accessible with Cloud Storage providers
packagist
shopware/core, shopware/platform
Filter by Severity
Filter by Ecosystem
maven
2,205
pypi
1,763
npm
1,673
packagist
1,404
go
993
nuget
883
cargo
393
rubygems
301
actions
19
swift
18
hex
11
pub
5
Filter by Package
Microsoft.ChakraCore
234
tensorflow
122
tensorflow-gpu
112
tensorflow-cpu
111
magento/community-edition
80
moodle/moodle
61
org.jenkins-ci.main:jenkins-core
56
com.fasterxml.jackson.core:jackson-databind
43
Django
42
typo3/cms
35
dolibarr/dolibarr
34
drupal/core
32
librenms/librenms
32
github.com/rancher/rancher
31
org.apache.tomcat:tomcat
31
pimcore/pimcore
30
mlflow
30
Plone
29
salt
29
apache-airflow
29
typo3/cms-core
28
phpmyadmin/phpmyadmin
28
microweber/microweber
27
nokogiri
26
drupal/drupal
25
ansible
24
com.liferay.portal:release.portal.bom
23
org.apache.struts:struts2-core
23
opencv-python
23
com.thoughtworks.xstream:xstream
22
opencv-contrib-python
22
symfony/symfony
21
com.jfinal:jfinal
21
matrix-synapse
20
thorsten/phpmyfaq
20
com.liferay.portal:release.dxp.bom
19
org.jenkins-ci.plugins:script-security
19
github.com/hashicorp/vault
18
pocketmine/pocketmine-mp
18
magento/project-community-edition
18
Pillow
18
pillow
18
org.apache.tomcat.embed:tomcat-embed-core
18
rdiffweb
17
io.undertow:undertow-core
17
gradio
17
github.com/grafana/grafana
17
parse-server
16
getgrav/grav
16
openssl-src
16
django
16
nilsteampassnet/teampass
15
keystone
15
github.com/hashicorp/consul
15
open-webui
15
org.xwiki.platform:xwiki-platform-oldcore
15
shopware/platform
14
org.keycloak:keycloak-core
14
Microsoft.AspNetCore.App.Runtime.win-x64
14
vyper
14
craftcms/cms
14
centreon/centreon
14
Microsoft.AspNetCore.App.Runtime.win-x86
14
net.mingsoft:ms-mcms
14
github.com/usememos/memos
14
rubygems-update
13
mindsdb
13
Microsoft.AspNetCore.App.Runtime.linux-arm64
13
Microsoft.AspNetCore.App.Runtime.linux-arm
13
org.keycloak:keycloak-services
13
Microsoft.NetCore.App.Runtime.win-arm64
13
silverstripe/framework
13
Microsoft.NetCore.App.Runtime.win-arm
13
golang.org/x/net
13
org.apache.solr:solr-core
13
apache-superset
13
shopware/core
13
Microsoft.AspNetCore.App.Runtime.win-arm
13
phpoffice/phpspreadsheet
12
activerecord
12
baserproject/basercms
12
electron
12
Microsoft.NetCore.App.Runtime.win-x86
12
org.apache.openmeetings:openmeetings-parent
12
Microsoft.AspNetCore.App.Runtime.win-arm64
12
Microsoft.AspNetCore.App.Runtime.linux-musl-x64
12
Microsoft.NetCore.App.Runtime.win-x64
12
Microsoft.AspNetCore.App.Runtime.linux-musl-arm64
12
mautic/core
12
next
11
github.com/argoproj/argo-cd/v2
11
github.com/argoproj/argo-cd
11
Microsoft.AspNetCore.App.Runtime.linux-x64
11
cockpit-hq/cockpit
11
froxlor/froxlor
11
org.springframework.security:spring-security-core
11
github.com/hashicorp/nomad
11
intelliants/subrion
11
gogs.io/gogs
11
github.com/zitadel/zitadel
11
directus
11
org.keycloak:keycloak-parent
11
Microsoft.AspNetCore.App.Runtime.osx-x64
11
actionpack
10
github.com/traefik/traefik/v2
10
surrealdb
10
laravel/framework
10
deno
10
k8s.io/kubernetes
10
snipe/snipe-it
10
openmage/magento-lts
10
nova
10
github.com/ollama/ollama
10
funadmin/funadmin
10
github.com/nats-io/nats-server/v2
10
github.com/ethereum/go-ethereum
9
rusqlite
9
lollms
9
org.apache.struts.xwork:xwork-core
9
rack
9
aim
9
Microsoft.NetCore.App.Runtime.linux-musl-arm64
9
org.apache.nifi:nifi
9
org.apache.geode:geode-core
9
cobbler
9
Microsoft.NetCore.App.Runtime.linux-musl-arm
9
h2o
9
org.apache.tomcat:tomcat-catalina
9
Microsoft.NetCore.App.Runtime.linux-x64
9
Microsoft.NetCore.App.Runtime.linux-arm64
9
zendframework/zendframework1
9
neutron
9
Microsoft.NetCore.App.Runtime.linux-arm
9
ckb
9
org.cloudfoundry.identity:cloudfoundry-identity-server
9
litellm
9
org.apache.hadoop:hadoop-main
9
flowise
9
Microsoft.NetCore.App.Runtime.linux-musl-x64
9
mercurial
9
org.springframework:spring-core
8
phpbb/phpbb
8
@anthropic-ai/claude-code
8
ai.h2o:h2o-core
8
github.com/mattermost/mattermost/server/v8
8
Microsoft.NetCore.App.Runtime.osx-arm64
8
org.craftercms:crafter-studio
8
plone
8
github.com/docker/docker
8
pyload-ng
8
github.com/sylabs/singularity
8
october/system
8
Microsoft.NetCore.App.Runtime.osx-x64
8
composer/composer
8
yeswiki/yeswiki
8
Microsoft.AspNetCore.App.Runtime.linux-musl-arm
8
cryptography
8
org.eclipse.jetty:jetty-server
8
moin
8
smarty/smarty
8
org.elasticsearch:elasticsearch
7
@strapi/strapi
7
strapi
7
cakephp/cakephp
7
codeigniter4/framework
7
org.jenkins-ci.plugins.workflow:workflow-cps-global-lib
7
org.jenkins-ci.plugins.workflow:workflow-cps
7
org.apache.inlong:manager-pojo
7
Microsoft.NETCore.App.Runtime.win-x86
7
contao/core-bundle
7
Microsoft.NETCore.App.Runtime.win-x64
7
cn.hutool:hutool-core
7
Microsoft.NETCore.App.Runtime.win-arm64
7
OPCFoundation.NetStandard.Opc.Ua.Core
7
apollo-router
7
org.bouncycastle:bcprov-jdk15on
7
DotNetNuke.Core
7
k8s.io/ingress-nginx
7
golang.org/x/crypto
7
mantisbt/mantisbt
7
ryu
7
phpmailer/phpmailer
7
com.xuxueli:xxl-job
7
opencv-python-headless
7
tar
7
org.apache.dolphinscheduler:dolphinscheduler
7
github.com/kyverno/kyverno
6
opencart/opencart
6
github.com/hyperledger/fabric
6
mediawiki/core
6
sized-chunks
6
Microsoft.AspNetCore.App.Runtime.osx-arm64
6
zendframework/zendframework
6
contao/contao
6
github.com/filebrowser/filebrowser/v2
6
org.apache.tomcat:tomcat-coyote
6
@openzeppelin/contracts
6
de.tum.in.ase:artemis-java-test-sandbox
6
github.com/gravitl/netmaker
6
ethyca-fides
6