Bagisto

Security Scorecard

Score

92C

Total CVEs

8

Patch Rate

100%

8 patched

Avg Response

65d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical3
High3
Medium2
Low0

Patch Status

Patched8 (100%)
Partial/Workaround0 (0%)
Unpatched0 (0%)

CVEs (8)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-21446Bagisto Installer API BypassCritical9.8-Patched
CVE-2026-21447Bagisto eCommerce Platform IDOR VulnerabilityHigh7.1-Patched
CVE-2026-21448Bagisto eCommerce Platform VulnerabilityCritical9.8-Patched
CVE-2026-21449Bagisto eCommerce VulnerabilityHigh8.8-Patched
CVE-2026-21450Bagisto eCommerce Server-Side Template InjectionCritical9.8-Patched
CVE-2026-21451Bagisto CMS XSSHigh8.4-Patched
CVE-2025-62418-Medium6.964dPatched
CVE-2025-62414-Medium6.965dPatched