{"id":"GHSA-hrfh-fp4x-crrq","aliases":[],"url":"https://o3.security/vulnerability/GHSA-hrfh-fp4x-crrq","summary":"Persistent XSS in newsletter module in Shopware","details":"### Impact\nPersistent XSS in newsletter module\n\n### Patches\n\nWe recommend updating to the current version 5.6.9. You can get the update to 5.6.9 regularly via the Auto-Updater or directly via the download overview.\n\nFor older versions you can use the Security Plugin:\nhttps://store.shopware.com/en/swag575294366635f/shopware-security-plugin.html\n\n### References\nhttps://docs.shopware.com/en/shopware-5-en/security-updates/security-update-11-2020","published":"2020-11-13T18:26:06Z","modified":"2024-12-02T05:46:44.775354Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"shopware/shopware","fixedVersion":"5.6.9"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/shopware/shopware/security/advisories/GHSA-hrfh-fp4x-crrq"},{"type":"WEB","url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-11-2020"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-12-02T05:46:44.775354Z"}}