GHSA-p26g-qhrp-vr2c
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
SAP Commerce does not sufficiently validate user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability in storefronts that are based on the product. Fixed in versions (SAP Hybris Commerce, versions 6.2, 6.3, 6.4, 6.5, 6.6, 6.7).
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 6, 2025 6:30 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.