
CVE-2026-23797 In Quick.Cart user passwords are stored in plaintext form. An attacker with high privileges can display users' password in user editing page. The vendor was notified… https://www.cve.org/CVERecord?id=CVE-2026-23797
Post summary
Quick.Cart stores user passwords in plaintext, allowing high-privilege attackers to view them via the user editing page. The vendor has been notified and a CVE record is available.

