CVE-2025-50847: Cs-Cart

Medium severity, CVSS 6.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross Site Request Forgery (CSRF) vulnerability in CS Cart 4.18.3, allows attackers to add products to a user's comparison list via a crafted HTTP request.

Affected products

  • Cs-Cart Cs-Cart: version 4.18.3 only

Published 2025-07-31. Last modified 2026-07-05.