VYPR
Vendor

JTL

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2026-54390CriJun 18, 2026
    risk 0.64cvss 9.8epss 0.01

    JTL Shop versions 5.2.0 through 5.7.1 contains a server-side template injection vulnerability that allows unauthenticated attackers to inject malicious template syntax due to unsanitized user-supplied input passed to the Smarty template engine. Attackers can exploit this flaw to…

  • CVE-2010-0691Feb 23, 2010
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in druckansicht.php in JTL-Shop 2 allows remote attackers to execute arbitrary SQL commands via the s parameter.