kerawen before v2.5.1 was discovered to contain a SQL injection vulnerability via the ocs_id_cart parameter at KerawenDeliveryModuleFrontController::initContent().
Metrics
Affected Vendors & Products
References
History
Thu, 26 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2023-11-04T00:00:00.000Z
Updated: 2024-09-05T14:33:52.645Z
Reserved: 2023-08-22T00:00:00.000Z
Link: CVE-2023-40922
Updated: 2024-08-02T18:46:11.310Z
Status : Modified
Published: 2023-11-04T23:15:07.807
Modified: 2024-11-21T08:20:18.397
Link: CVE-2023-40922
No data.