MEDIUM
An issue in Webkul Bagisto 2.4.9 allows a remote attacker to obtain sensitive information via the add-to-cart API and the downloadable fulfilment components
Published Sep 15, 2026
6.5
MEDIUMCVSS 3.1
EPSS 0.46%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.