Shopify
26 known vulnerabilities
Top Products
React Router is a router for React. In versions 7.0.0 through 7.17.0, the manifest endpoint could be accessed via unauth
React Router is a router for React. Versions 6.0.0 through 7.17.0 are vulnerable to Open Redirtect through use of backsl
React Router is a router for React. In versions 6.30.2 through 6.30.4 and 7.9.6 through 7.12.0, applications that allow
React Router is a router for React. In versions 7.11.0 through 7.17.0, the RSCErrorHandler is missing protocol validatio
React Router is a router for React. In versions 6.4.0 through 7.17.0, if application code was written in a way that allo
React Router is a router for React. In versions 7.0.0 through 7.14.x of react-router and versions 2.10.0 through 2.17.4
React Router is a router for React. In versions 7.0.0 through 7.14.1, when using Framework Mode, a combination of steps
React Router is a router for React. In versions 7.0.0 through 7.14.0 and 6.7.0 through 6.30.3, certain URLs passed to th
React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Co
React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Co
React Router is a router for React. In versions 7.5.1 through 7.13.1, when using Framework Mode with pre-rendering enabl
Tophat is a mobile applications testing harness. Prior to 2.5.1, Tophat is affected by remote code execution via crafted
Ruby LSP is an implementation of the language server protocol for Ruby. Prior to Shopify.ruby-lsp version 0.10.2 and rub
React Router is a router for React. In @remix-run/server-runtime version prior to 2.17.3. and react-router 7.0.0 through
React Router is a router for React. In @remix-run/router version prior to 1.23.2 and react-router 7.0.0 through 7.11.0,
React Router is a router for React. In @remix-run/react version prior to 2.17.3. and react-router 7.0.0 through 7.11.0,
React Router is a router for React. In versions 6.0.0 through 6.30.1 and 7.0.0 through 7.9.5, an attacker-supplied path
React Router is a router for React. In @react-router/node versions 7.0.0 through 7.9.3, @remix-run/deno prior to version
React Router is a router for React. In @remix-run/react versions 1.15.0 through 2.17.0. and react-router versions 7.0.0
Frequently Asked Questions
How many CVEs affect Shopify?
Shopify has 26 CVE records in our database, including 4 critical and 13 high severity vulnerabilities.
What are the most severe Shopify vulnerabilities?
Shopify has 4 critical severity (CVSS 9.0+) and 13 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Shopify vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Shopify products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Shopify Vulnerabilities
CyberStrike scans your infrastructure for Shopify vulnerabilities and provides real-time remediation guidance.
Get Started