Executive brief
Shopware Has Improper Control of Generation of Code in Twig rendered views
Affected products
- Packagist shopware/core
- Packagist shopware/shopware
Junglewise Threat Intelligence
CVE-2026-23498 · Severity: low · CVSS 3.1 · Published 2026-01-14
Technologies: shopware/core (Packagist), shopware/shopware (Packagist). Vendors: Packagist.
Shopware Has Improper Control of Generation of Code in Twig rendered views