Beveiligingsadvies

CVE-2021-36030

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-09-01 14:31:19
Laatst bijgewerkt 2024-09-17 03:39:08
Toegewezen door adobe
CVSS-score 7.5
Status PUBLISHED

Beschrijving

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability during the checkout process. An unauthenticated attacker can leverage this vulnerability to alter the price of items.