Over 10 years we help companies reach their financial and branding goals. Engitech is a values-driven technology agency dedicated.

Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

DATE

08.10.2023

Affected Vendor

thirsty bees – an open-source e-commerce platform https://thirtybees.com/ (GitHub page: https://github.com/thirtybees/thirtybees)

Affected Product

thirty bees Core

Vulnerable version

1.4.0

Fixed version

1.5.0

Recommendations

Update to version 1.5.0 or newer

Vulnerability details

A reflected cross-site scripting (XSS) vulnerability was discovered in the Core. 

CVE

CVE-2023-45958

Credits

Ulaş Deniz İlhan

Do you think the security of your data might be lacking? Let's find the best approach together.
Once you contact us, we will ask you about the project you want to secure.

NEED A CONSULTATION?