VYPR

xShop

by XShop

CVEs (1)

  • CVE-2026-49849CriAug 21, 2026
    risk 0.52cvss 9.1epss

    xShop is an open-source shop developed in Laravel. An Unrestricted File Upload vulnerability in xShop version 3.0.3 allows an authenticated administrator to upload executable files (e.g., .php). By uploading a specially crafted php file, an attacker can achieve Remote Code…