CVE-2026-45708
CubeCart is an ecommerce software solution. Prior to 6.7.3, an admin with documents edit permission can save raw into the Invoice Editor. The next time any admin clicks Print on any order, the rendered template is written to files/print.
More information : https://github.com/cubecart/v6/security/advisories/GHSA-747j-4mmc-cj63
