CVE-2026-108829 | Zen Cart up to 2.2.2 Module Configuration admin/modules.php configuration sql injection (GHSA-g443-8869-6g52)
A vulnerability was found in Zen Cart up to 2.2.2. It has been declared as problematic. Affected by this issue is some unknown functionality of the file admin/modules.php of the component Module Configuration. The manipulation of the argument configuration results in sql injection.
This vulnerability is cataloged as CVE-2026-108829. The attack may be launched remotely. Furthermore, there is an exploit available.
It is advisable to implement a patch to correct this issue.VulDB Recent EntriesRead More