CVE-2023-45854

Publication date

2024-09-16 00:00:00

Family

mitre

State

PUBLISHED

Description

A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.