Skip to main content
institutional access

You are connecting from
Lake Geneva Public Library,
please login or register to take advantage of your institution's Ground News Plan.

Published loading...Updated

Race Condition Vulnerability in Nopcommerce Enables Single Packet Exploits

Summary by IT-I-Ko
A critical vulnerability has been discovered in the popular open source shop software nopCommerce (up to and including version 4.60.4) that allows an attacker to redeem a gift card multiple times using a technique called "Single-Packet-Attack". Correctly executed, attackers can get articles free of charge. The vulnerability was identified by security researchers from Outpost24 and concerns the parallel processing of requests au The post Race Con…
DisclaimerThis story is only covered by news sources that have yet to be evaluated by the independent media monitoring agencies we use to assess the quality and reliability of news outlets on our platform. Learn more here.

2 Articles

A critical security vulnerability has been discovered in the popular open source shop software "nopCommerce" (up to and including version 4.60.4) that allows an attacker to redeem a gift card multiple times using a single packet attack technology. Properly executed, attackers can get articles free of charge. The vulnerability has been identified by security researchers from Outpost24 and concerns parallel processing of requests on websites that …

A critical vulnerability has been discovered in the popular open source shop software nopCommerce (up to and including version 4.60.4) that allows an attacker to redeem a gift card multiple times using a technique called "Single-Packet-Attack". Correctly executed, attackers can get articles free of charge. The vulnerability was identified by security researchers from Outpost24 and concerns the parallel processing of requests au The post Race Con…

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • There is no tracked Bias information for the sources covering this story.

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

IT-I-Ko broke the news in on Tuesday, September 2, 2025.
Sources are mostly out of (0)
News
For You
Search
BlindspotLocal