LOW
GHSA-qvhr-55hg-3qwv
Non-persistent XSS in the Storefront in Shopware
Quick fix
GHSA-qvhr-55hg-3qwv — shopware/platform: upgrade to the fixed version with the command below.
composer require shopware/platform:^6.3.1.1Details
### Impact Non-persistent XSS in the Storefront
### Patches We recommend to update to the current version 6.3.1.1. You can get the update to 6.3.1.1 regularly via the Auto-Updater or directly via the download overview.
For older versions you can use the Security Plugin: https://store.shopware.com/en/detail/index/sArticle/518463/number/Swag136939272659
### References https://docs.shopware.com/en/shopware-6-en/security-updates/security-update-09-2020
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/shopware/platform
Introduced in:
0Fixed in: 6.3.1.1Fix
composer require shopware/platform:^6.3.1.1