CVE-2018-20703: Cubecart

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

CubeCart 6.2.2 has Reflected XSS via a /{ADMIN-FILE}/ query string.

Affected products

Published 2019-01-13. Last modified 2026-06-17.