Vuln
·
Scope
首頁
套件
KEV
Critical
Insights
同步紀錄
Pricing
EN
中
pkg:RubyGems/
spree_api
共 3 筆 CVE
HIGH
1
MEDIUM
1
✅ 檢查你的版本
檢查
所有已知漏洞
HIGH
7.7
CVE-2020-26223
Authorization bypass in Spree
>= 3.7.0, < 3.7.13
MEDIUM
6.5
CVE-2026-22588
Spree API has Authenticated Insecure Direct Object Reference (IDOR) via Order Modification
>= 3.7.0, < 4.10.2
—
CVE-2026-25758
Unauthenticated Spree Commerce users can access all guest addresses
from 0, < 4.10.3