CVE-2026-63472

CVE-2026-63472 published: Vendure is an open-source headless commerce platform. Prior to 3.7.0, ExternalAuthenticationService.createCustomerAndUser in packages/core/src/service/helpers/external-authentication/external-authentication.service.ts selects an existing customer user by em...

View full NVD advisory → ← Back to CVE watch