CyberRota Analysis
AI-GeneratedWebkul Bagisto version 2.4.9 is vulnerable to a remote information disclosure flaw that enables attackers to access sensitive data through the add-to-cart API and downloadable fulfillment components. This could lead to unauthorized exposure of user information or system details. E-commerce platforms utilizing this version should prioritize patching to mitigate potential data breaches.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
An issue in Webkul Bagisto 2.4.9 allows a remote attacker to obtain sensitive information via the add-to-cart API and the downloadable fulfilment components.