216.73.216.6

CVE-2026-3714

· Published 08/03/2026 07:16 · Modified 09/03/2026 18:37

Labels: CVE-2026-3714 2026-03-08CVE-2026-3714CWE-791[email protected]

Essential information

Published
08/03/2026 07:16
Modified
09/03/2026 18:37
Author
Creator
CVSS
5.1 MEDIUM (v3) 5.1 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability has been found in OpenCart 4.0.2.3. Affected by this issue is the function Save of the file admin/controller/design/template.php of the component Incomplete Fix CVE-2024-36694. Such manipulation leads to improper neutralization of special elements used in a template engine. The attack may be performed from remote. The vendor was contacted early about this disclosure but did not respond in any way.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
opencart / opencart cpe:2.3:a:opencart:opencart:4.0.2.3:*:*:*:*:*:*:*

References