Joomla Extension - joomshaper.com - unauthenticated...
High severity
Unreviewed
Published
Jul 23, 2026
to the GitHub Advisory Database
•
Updated Jul 23, 2026
Description
Published by the National Vulnerability Database
Jul 23, 2026
Published to the GitHub Advisory Database
Jul 23, 2026
Last updated
Jul 23, 2026
Joomla Extension - joomshaper.com - unauthenticated payment/order forgery in Easy Store extension 1.0.0-2.0.1 - Critical order and payment information, including states, are processed from client side input, enabling unauthenticated attackers to manipulate payment and order states of arbritrary orders.
References