Skip to content
QuantumScanPublic scan report

Repository

nopSolutions/nopCommerce

Scanned on May 27, 2026

45

Risk score/ 100

Moderate risk

Summary

The nopCommerce repository contains one critical vulnerability: SHA-1 usage in the caching service for generating cache keys. While SHA-1 is cryptographically broken for collision resistance, the risk severity depends on whether cache keys are security-critical or merely functional identifiers. The limited scope (1 file of 200 scanned) suggests controlled exposure, but remediation is recommended for future-proofing and compliance readiness.

Critical

0

High

0

Medium

0

Low

0

Scan your own repository

Free. Results in ~90 seconds. CBOM + DORA/NIS2 PDF included.

Start a free scan