
CVE-2026-25878 FroshAdminer is the Adminer plugin for Shopware Platform. Prior to 2.2.1, the Adminer route (/admin/adminer) was accessible without Shopware admin authentication. The… https://www.cve.org/CVERecord?id=CVE-2026-25878
Post summary
CVE-2026-25878 is an authentication‑bypass vulnerability in the Shopware Adminer plugin, disclosed with specific technical details but without a PoC, exploit code, or evidence of active exploitation.

