Unrated severityNVD Advisory· Published Sep 8, 2025· Updated Sep 29, 2025
CVE-2025-55998
CVE-2025-55998
Description
A cross-site scripting (XSS) vulnerability in Smart Search & Filter Shopify and BigCommerce apps allows a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into several filter parameter
Affected products
1- Shopify and BigCommerce apps/Smart Search & Filterdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.