A vulnerability, which was classified as critical, has been found in CubeCart up to 6.5.x. The affected element is an unknown function. Performing a manipulation results in sql injection.

This vulnerability was named CVE-2026-34018. The attack may be initiated remotely. There is no available exploit.

It is advisable to upgrade the affected component.