{"api_version":"v1","generated_at":"2026-10-07T20:15:00+00:00","product":{"cve_count":37,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-shopware-shopware-8d73c2dcd793","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/shopware","name":"Shopware","next_cursor":null,"observations":[{"affected":">= 6.7.3.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48012","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48012","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-24T13:31:43.099Z","patch_url":"","primary_source":"","published":"2026-07-23T19:16:38.956Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48013","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48013","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-23T19:27:54.530Z","patch_url":"","primary_source":"","published":"2026-07-23T19:14:32.579Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48009","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48009","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-17T19:08:02.871Z","patch_url":"","primary_source":"","published":"2026-07-17T17:58:15.568Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48014","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48014","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-21T01:48:04.992Z","patch_url":"","primary_source":"","published":"2026-07-17T17:56:43.236Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48010","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48010","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-17T23:15:41.762Z","patch_url":"","primary_source":"","published":"2026-07-17T17:55:25.722Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48016","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48016","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-20T19:27:17.356Z","patch_url":"","primary_source":"","published":"2026-07-17T17:54:21.990Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48015","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48015","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-17T18:11:57.809Z","patch_url":"","primary_source":"","published":"2026-07-17T17:53:01.695Z"},{"affected":"< 6.6.10.18; >= 6.7.0.0, < 6.7.10.1","affected_versions_present":true,"cve_id":"CVE-2026-48008","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48008","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-17T19:47:56.823Z","patch_url":"","primary_source":"","published":"2026-07-17T17:47:27.906Z"},{"affected":">= 6.7.0.0, < 6.7.10.1; < 6.6.10.18","affected_versions_present":true,"cve_id":"CVE-2026-48011","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48011","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-11T14:26:36.286Z","patch_url":"","primary_source":"","published":"2026-06-10T20:07:02.345Z"},{"affected":">= 6.7.0.0, < 6.7.6.1","affected_versions_present":true,"cve_id":"CVE-2026-23498","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23498","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-14T21:15:57.391Z","patch_url":"https://github.com/shopware/shopware/commit/3966b05590e29432b8485ba47b4fcd14dd0b8475","primary_source":"","published":"2026-01-14T18:31:19.070Z"},{"affected":">= 6.4.6.0, < 6.6.10.10; >= 6.7.0.0, < 6.7.5.1","affected_versions_present":true,"cve_id":"CVE-2025-67648","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-67648","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-12-11T19:00:14.044Z","patch_url":"https://github.com/shopware/shopware/commit/c9242c02c84595d9fa3e2adf6a264bc90a657b58","primary_source":"","published":"2025-12-10T23:55:10.060Z"},{"affected":"6.6.x; 6.7.x","affected_versions_present":true,"cve_id":"CVE-2025-7954","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-7954","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-03T20:07:42.751Z","patch_url":"","primary_source":"","published":"2025-08-06T07:16:09.712Z"},{"affected":"< 6.5.8.17; >= 6.6.0.0, < 6.6.10.3; >= 6.7.0.0-rc1, < 6.7.0.0-rc2","affected_versions_present":true,"cve_id":"CVE-2025-32378","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-32378","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-09T20:46:25.559Z","patch_url":"","primary_source":"","published":"2025-04-09T15:37:44.010Z"},{"affected":"< 6.5.8.17; >= 6.6.0.0, < 6.6.10.3; >= 6.7.0.0-rc1, < 6.7.0.0-rc2","affected_versions_present":true,"cve_id":"CVE-2025-30150","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-30150","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-08T18:46:21.570Z","patch_url":"","primary_source":"","published":"2025-04-08T13:46:44.823Z"},{"affected":"< 6.5.8.17; >= 6.6.0.0, < 6.6.10.3; >= 6.7.0.0-rc1, < 6.7.0.0-rc2","affected_versions_present":true,"cve_id":"CVE-2025-30151","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-30151","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-08T18:47:54.011Z","patch_url":"","primary_source":"","published":"2025-04-08T13:46:30.629Z"},{"affected":">= 6.6.0.0, <= 6.6.5.0; <= 6.5.8.12","affected_versions_present":true,"cve_id":"CVE-2024-42357","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-42357","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-08T18:33:33.536Z","patch_url":"https://github.com/shopware/core/commit/63c05615694790f5790a04ef889f42b764fa53c9","primary_source":"","published":"2024-08-08T14:55:50.674Z"},{"affected":"<= 6.5.8.12; >= 6.6.0.0, <= 6.6.5.0","affected_versions_present":true,"cve_id":"CVE-2024-42356","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-42356","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-09T15:55:33.933Z","patch_url":"https://github.com/shopware/core/commit/04183e0c02af3b404eb7d52c683734bfe0595038","primary_source":"","published":"2024-08-08T14:52:53.604Z"},{"affected":"<= 6.5.8.12; >= 6.6.0.0, <= 6.6.5.0","affected_versions_present":true,"cve_id":"CVE-2024-42355","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-42355","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-08T15:32:50.503Z","patch_url":"https://github.com/shopware/core/commit/a784aa1cec0624e36e0ee4d41aeebaed40e0442f","primary_source":"","published":"2024-08-08T14:49:38.492Z"},{"affected":"<= 6.5.8.12; >= 6.6.0.0, <= 6.6.5.0","affected_versions_present":true,"cve_id":"CVE-2024-42354","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-42354","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-08T15:24:38.347Z","patch_url":"https://github.com/shopware/core/commit/a784aa1cec0624e36e0ee4d41aeebaed40e0442f","primary_source":"","published":"2024-08-08T14:44:24.678Z"},{"affected":">= 6.3.5.0, < 6.5.8.8; >= 6.6.0.0-rc1, < 6.6.1.0","affected_versions_present":true,"cve_id":"CVE-2024-31447","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-31447","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-03T18:25:39.752Z","patch_url":"https://github.com/shopware/shopware/commit/5cc84ddd817ad0c1d07f9b3c79ab346d50514a77","primary_source":"","published":"2024-04-08T15:39:29.678Z"},{"affected":">= 6.5.8.0, < 6.5.8.7","affected_versions_present":true,"cve_id":"CVE-2024-27917","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-27917","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-05T20:07:41.626Z","patch_url":"https://github.com/shopware/shopware/commit/7d9cb03225efca5f97e69b800d8747598dd15ce3","primary_source":"","published":"2024-03-06T19:36:27.357Z"},{"affected":"< 6.5.7.4","affected_versions_present":true,"cve_id":"CVE-2024-22406","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22406","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-06-02T15:06:58.811Z","patch_url":"","primary_source":"","published":"2024-01-16T22:30:04.324Z"},{"affected":"< 6.5.7.4","affected_versions_present":true,"cve_id":"CVE-2024-22407","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22407","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-11-13T19:39:35.421Z","patch_url":"","primary_source":"","published":"2024-01-16T22:29:06.955Z"},{"affected":"< 6.5.7.4","affected_versions_present":true,"cve_id":"CVE-2024-22408","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22408","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-06-17T21:19:16.067Z","patch_url":"","primary_source":"","published":"2024-01-16T22:26:41.447Z"},{"affected":"< 5.7.18","affected_versions_present":true,"cve_id":"CVE-2023-34099","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-34099","fixed":"5.7.18","last_modified":"2024-11-07T17:03:59.129Z","patch_url":"https://github.com/shopware5/shopware/commit/39cc714d9a0be33b43877044d0b88ea3c6b43f3d","primary_source":"","published":"2023-06-27T16:29:07.220Z"},{"affected":"< 5.7.18","affected_versions_present":true,"cve_id":"CVE-2023-34098","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-34098","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-07T17:05:23.474Z","patch_url":"https://github.com/shopware5/shopware/commit/b3518c8d9562a38615d638f31f79829f6e2f4b6a","primary_source":"","published":"2023-06-27T16:25:15.157Z"},{"affected":"< 5.7.15","affected_versions_present":true,"cve_id":"CVE-2022-36102","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-36102","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T17:12:08.264Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-09-2022","primary_source":"","published":"2022-09-12T20:00:24.000Z"},{"affected":"< 5.7.15","affected_versions_present":true,"cve_id":"CVE-2022-36101","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-36101","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T17:12:13.936Z","patch_url":"https://github.com/shopware/shopware/commit/af5cdbc81d60f21b728e1433aeb8837f25938d2a","primary_source":"","published":"2022-09-12T20:00:16.000Z"},{"affected":">= 5.7.0, < 5.7.14","affected_versions_present":true,"cve_id":"CVE-2022-31148","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31148","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T17:56:53.899Z","patch_url":"https://github.com/shopware/shopware/commit/7875855005648fba7b39371a70816afae2e07daf","primary_source":"","published":"2022-08-01T17:10:12.000Z"},{"affected":"< 5.7.12","affected_versions_present":true,"cve_id":"CVE-2022-31057","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31057","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T18:07:50.536Z","patch_url":"https://github.com/shopware/shopware/commit/3e025a0a3e123f4108082645b1ced6fb548f7b6f","primary_source":"","published":"2022-06-27T19:30:26.000Z"},{"affected":">= 5.0.4, < 5.7.9","affected_versions_present":true,"cve_id":"CVE-2022-24892","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24892","fixed":"5.7.9.","last_modified":"2025-04-23T18:31:35.369Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-04-2022","primary_source":"","published":"2022-04-28T14:20:12.000Z"},{"affected":">= 5.2.0, < 5.7.9","affected_versions_present":true,"cve_id":"CVE-2022-24879","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24879","fixed":"5.7.9.","last_modified":"2025-04-23T18:31:44.146Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-04-2022","primary_source":"","published":"2022-04-28T14:15:14.000Z"},{"affected":"< 5.7.9","affected_versions_present":true,"cve_id":"CVE-2022-24873","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24873","fixed":"5.7.9.","last_modified":"2025-04-23T18:31:52.852Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-04-2022","primary_source":"","published":"2022-04-28T13:45:14.000Z"},{"affected":">=5.7.3, < 5.7.7","affected_versions_present":true,"cve_id":"CVE-2022-21652","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21652","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:14:34.905Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/securityupdates/security-update-01-2022","primary_source":"","published":"2022-01-05T19:20:18.000Z"},{"affected":">= 5.0.0, < 5.7.7","affected_versions_present":true,"cve_id":"CVE-2022-21651","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21651","fixed":"5.7.7.","last_modified":"2025-04-23T19:14:41.168Z","patch_url":"https://github.com/shopware/shopware/security/advisories/GHSA-c53v-qmrx-93hg","primary_source":"","published":"2022-01-05T19:15:14.000Z"},{"affected":"< 5.7.6","affected_versions_present":true,"cve_id":"CVE-2021-41188","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41188","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T03:08:31.242Z","patch_url":"https://github.com/shopware/shopware/commit/37213e91d525c95df262712cba80d1497e395a58","primary_source":"","published":"2021-10-26T15:00:16.000Z"},{"affected":"< 5.6.10","affected_versions_present":true,"cve_id":"CVE-2021-32712","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-32712","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T23:25:31.057Z","patch_url":"https://docs.shopware.com/en/shopware-5-en/security-updates/security-update-05-2021","primary_source":"","published":"2021-06-24T20:50:11.000Z"},{"affected":"< 5.6.10","affected_versions_present":true,"cve_id":"CVE-2021-32713","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-32713","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T23:25:31.139Z","patch_url":"https://github.com/shopware/shopware/commit/a0850ffbc6f581a8eb8425cc2bf77a0715e21e12","primary_source":"","published":"2021-06-24T20:25:12.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Shopware"}}
