High severity8.8GHSA Advisory· Published Jan 15, 2019· Updated Jun 17, 2026
CVE-2018-20713
CVE-2018-20713
Description
Shopware before 5.4.3 allows SQL Injection by remote authenticated users, aka SW-21404.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
shopware/shopwarePackagist | < 5.4.3 | 5.4.3 |
Affected products
3Patches
Vulnerability mechanics
References
4- docs.shopware.com/en/shopware-5-en/security-updates/security-update-05-2018nvdMitigationVendor AdvisoryWEB
- github.com/advisories/GHSA-42gv-77f4-r3j9ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-20713ghsaADVISORY
- github.com/shopware5/shopware/commit/73cb46727050e28a0d7c2cf8471baaa3eaf2e5e8ghsaWEB
News mentions
0No linked articles in our index yet.