A vulnerability categorized as critical has been discovered in EC-CUBE. Affected by this issue is some unknown functionality of the component MFA. The manipulation results in authentication bypass using alternate channel.
This vulnerability was named CVE-2026-30777. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.