CVE-2024-58248

Publication date

2025-04-16 00:00:00

Family

mitre

State

PUBLISHED

Description

nopCommerce through 4.90.1 does not offer locking for order placement. Thus there is a race condition with duplicate redeeming of gift cards.