CVE-2026-54645 | CubeCart up to 6.7.4 Product Editing products.index.inc.php RAW cross site scripting
A vulnerability classified as problematic has been found in CubeCart up to 6.7.4. Affected by this issue is some unknown functionality of the file admin/sources/products.index.inc.php of the component Product Editing. This manipulation of the argument RAW causes cross site scripting.
This vulnerability is tracked as CVE-2026-54645. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More