Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

ecwid — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting ecwid. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ecwid provides e-commerce solutions enabling businesses to create online stores across multiple platforms. Historically, vulnerabilities have included stored cross-site scripting (XSS) allowing attacker-controlled content injection, remote code execution (RCE) in specific plugin implementations, and privilege escalation flaws in administrative interfaces. Security assessments have identified input validation weaknesses as a recurring issue. While no major public security incidents have been widely reported, the platform's CVE history reflects typical web application vulnerabilities common in e-commerce systems. The company has addressed reported issues through security patches and updates, maintaining a moderate security posture relative to industry standards.

Found 1 results / 4Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2022-2432 Ecwid Ecommerce Shopping Cart <= 6.10.23 - Cross-Site Request Forgery to Settings/Options Update — Ecwid Ecommerce Shopping CartCWE-352 8.8 High2022-09-06

This page lists every published CVE security advisory associated with ecwid. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.