Smartstore

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 8
    Known Exploited: 0
    4
    Critical Level Threats
    2
    High Level Threats
    1
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-10778

    Smartstore Gift Voucher confirm race condition

    Last Modified: Apr 15, 2026
    Published: Sep 22, 2025

    CVE-2020-36365

    Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskController.Edit open redirect.

    Last Modified: Nov 21, 2024
    Published: May 19, 2021

    CVE-2020-36364

    An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0. Administration/Controllers/ImportController.cs allows path traversal (for copy and delete actions) in the ImportController.Create method via a TempFileName field.

    Last Modified: Nov 21, 2024
    Published: May 19, 2021

    CVE-2021-32607

    An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1. Views/PrivateMessages/View.cshtml does not call HtmlUtils.SanitizeHtml on a private message.

    Last Modified: Nov 21, 2024
    Published: May 12, 2021

    CVE-2021-32608

    An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1. Views/Boards/Partials/_ForumPost.cshtml does not call HtmlUtils.SanitizeHtml on certain text for a forum post.

    Last Modified: Nov 21, 2024
    Published: May 12, 2021
    Items Per Page
    Smartstore Vulnerabilities & Security CVEs | CVE-DB