CVE-2026-108696 | CoreUnion CoreShop up to 1.5.5 Order Controller OrderController id/reshipId authorization
A vulnerability, which was classified as critical, was found in CoreUnion CoreShop up to 1.5.5. This vulnerability affects the function OrderController of the component Order Controller. Such manipulation of the argument id/reshipId leads to authorization bypass.
This vulnerability is traded as CVE-2026-108696. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More