Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.5
CVE-2026-79324
- EPSS 0.32%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 10.09.2026 17:48:38
Missing authorization in the Address Delete controller in Mageplaza GDPR for Magento 2 (mageplaza/module-gdpr) through 4.2.9 allows remote unauthenticated attackers to delete any customer's saved address, and to erase all stored addresses by iteratin...
1