Security Advisory

CVE-2026-24994

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-03 14:08:37
Last updated 2026-04-28 16:14:52
Assigner Patchstack
State PUBLISHED

Description

Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.5.7.2.