VYPR

Autocomplete Workflow

by Opencart

CVEs (2)

  • CVE-2026-84438LowSep 2, 2026
    risk 0.23cvss 3.5epss

    A vulnerability was determined in OpenCart 4.1.0.3/4.1.0.4. This affects an unknown function of the file catalog/controller/account/edit.php of the component Autocomplete Workflow. This manipulation of the argument firstname causes cross site scripting. The attack can be…

  • CVE-2026-84437LowSep 2, 2026
    risk 0.23cvss 3.5epss

    A vulnerability was found in OpenCart 4.1.0.3/4.1.0.4. The impacted element is an unknown function of the file catalog/controller/account/address.php of the component Autocomplete Workflow. The manipulation of the argument address_1 results in cross site scripting. It is…