HackerOne Bug Bounty Disclosure: graphql-introspection-enabled-on-shopify-api-endpoint-intended-behavior-ahmednasr

Company Name: Shopify Company HackerOne URL: https://hackerone.com/shopify Submitted By:ahmednasr1Link to Submitters Profile:https://hackerone.com/ahmednasr1 Report Title:GraphQL Introspection Enabled on Shopify API Endpoint...

HackerOne Bug Bounty Disclosure: url-scheme-validation-bypass-in-shopify-mobile-app-allows-javascript-execution-fr-via

Company Name: Shopify Company HackerOne URL: https://hackerone.com/shopify Submitted By:fr4viaLink to Submitters Profile:https://hackerone.com/fr4via Report Title:URL Scheme Validation Bypass in Shopify Mobile...

CVE Alert: CVE-2025-9216 – kodezen – StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More

CVE-2025-9216 HIGHNo exploitation known The StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More plugin for...