CVE-2026-63106 | Razinsoft Ready eCommerce up to 4.5.1 Product Listing API ProductController.php rating sql injection
A vulnerability, which was classified as critical, was found in Razinsoft Ready eCommerce up to 4.5.1. This issue affects some unknown processing of the file ProductController.php of the component Product Listing API. Such manipulation of the argument rating leads to sql injection.
This vulnerability is listed as CVE-2026-63106. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More