Multiple SQL Injection 0-Day Exploits for an OpenCart Plugin for Sale
Dark Web2026-08-07, 10:10
For informational purposes only.
Vulnerability type: Multiple SQL Injection vulnerabilities
Price: Auction (starting bid — $100, minimum increment — $100, buyout — $5,000)
Price: Auction (starting bid — $100, minimum increment — $100, buyout — $5,000)
The author claims to be selling a set of exploits targeting multiple SQL injection vulnerabilities in an OpenCart plugin. According to the seller, exploitation does not require any special user privileges.
The seller states that the extension has more than 17,000 installs from the official OpenCart Marketplace, representing a significant user base for a single plugin.
OpenCart — a popular open-source CMS for online stores, especially in the small and medium e-commerce segment. According to BuiltWith, there are about 190 thousand active sites on OpenCart worldwide and more than 922 thousand sites that have used the platform historically.
Vendors
Products