Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Onur Bi̇li̇ci̇

#24817of 53,633
9.8Total CVSS
Vulnerabilities · 1
PT-2026-40901
9.8
2026-05-14
Unknown · Ecommerce-Website · CVE-2026-2347
**Name of the Vulnerable Software and Affected Versions** E-Commerce Website versions prior to 4.5.001 **Description** An authorization bypass exists due to a user-controlled key, which allows for session hijacking. This is an Insecure Direct Object Reference (IDOR), a condition where an application provides direct access to objects based on user-supplied input. **Recommendations** Update to version 4.5.001 or later.