CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It may be remotely exploitable.
CVE
CVE-2025-56426
Severity
MEDIUM
CVSS
6.5
EPSS
0.38%
Original NVD Description
An issue WebKul Bagisto v.2.3.6 allows a remote attacker to execute arbitrary code via the Cart/Checkout API endpoint, specifically, the price calculation logic fails to validate quantity inputs properly.
Related CVEs
Other vulnerabilities affecting the same vendor(s)