VYPR

Saleor Storefront

by mirumee

CVEs (1)

  • CVE-2020-15085Jun 30, 2020
    risk 0.00cvss epss 0.01

    In Saleor Storefront before version 2.10.3, request data used to authenticate customers was inadvertently cached in the browser's local storage mechanism, including credentials. A malicious user with direct access to the browser could extract the email and password. In versions…