CVE-2023-6145 describes a critical SQL injection issue in Softomi Advanced C2C Marketplace Software affecting versions before 12122023. The vulnerability is rated CVSS 9.8 and is classified as CWE-89, indicating a path for attacker-controlled SQL statements with severe confidentiality, integrity, and availability impact.
MEDIUMİstanbul Soft Informatics and Consultancy Limited CompanyCVE published 2023-12-21
CVE-2023-6122 is a reflected cross-site scripting issue in İstanbul Soft Informatics and Consultancy Limited Company Softomi Gelişmiş C2C Pazaryeri Yazılımı (Softomi Advanced C2C Marketplace Software). NVD and the USOM advisory indicate the issue affects versions before 12122023. The CVE was published on 2023-12-21; the 2026-05-20 timestamp reflects later record modification, not the original disclosure date.