Skip to main content

Vendor/product archive

shopify / koa-shopify-auth CVEs

Beta · best-effort

1 CVEs tagged to shopify / koa-shopify-auth0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-8176

Published Jul 2, 2020

A cross-site scripting vulnerability exists in koa-shopify-auth v3.1.61-v3.1.62 that allows an attacker to inject JS payloads into the `shop` parameter on the `/shopify/auth/enabl…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1