Junglewise Threat Intelligence

CVE-2026-22242: CoreShop Vulnerable to SQL Injection via Admin Reports

CVE-2026-22242 · Severity: low · CVSS 3.1 · Published 2026-01-07

Technologies: coreshop/core-shop (Packagist). Vendors: Packagist.

Executive brief

CoreShop Vulnerable to SQL Injection via Admin Reports

Affected products

  • Packagist coreshop/core-shop

Related threats