Spa-cart

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 7
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    2
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-58304

    SPA-CART CMS 1.9.0.3 Stored Cross-Site Scripting

    Last Modified: Jul 14, 2026
    Published: Dec 11, 2025

    CVE-2024-6129

    spa-cartcms Username login observable behavioral discrepancy

    Last Modified: Nov 21, 2024
    Published: Jun 18, 2024

    CVE-2024-6128

    spa-cartcms Checkout Page checkout behavioral workflow

    Last Modified: Nov 21, 2024
    Published: Jun 18, 2024

    CVE-2023-43149

    SPA-Cart 1.9.0.3 is vulnerable to Cross Site Request Forgery (CSRF) that allows a remote attacker to add an admin user with role status.

    Last Modified: Nov 21, 2024
    Published: Oct 12, 2023

    CVE-2023-43148

    SPA-Cart 1.9.0.3 has a Cross Site Request Forgery (CSRF) vulnerability that allows a remote attacker to delete all accounts.

    Last Modified: Nov 21, 2024
    Published: Oct 12, 2023
    Items Per Page