Adobe Commerce versions 2.4.6-p4, 2.4.5-p6, 2.4.4-p7, 2.4.7-beta3 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction, but the attack complexity is high.
References
Configurations
No configuration.
History
10 Apr 2024, 13:23
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-10 12:15
Updated : 2024-04-10 13:23
NVD link : CVE-2024-20758
Mitre link : CVE-2024-20758
CVE.ORG link : CVE-2024-20758
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation