CVE-2026-21449
Bagisto is an open source laravel eCommerce platform. Versions prior to 2.3.10 are vulnerable to server-side template injection via first name and last name from a low-privilege user. Version 2.3.10 fixes the issue.
Vendor
Product
CWE
Yayın Tarihi
2026-01-02 21:16:02
Güncelleme
2026-01-08 21:21:59
Source Identifier
security-advisories@github.com
KEV Date Added
-