Adobe

Commerce

147 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Published 13.10.2023 07:15:40
  • Last modified 21.11.2024 08:13:06

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Improper Authorization vulnerability that could lead in a security feature bypass in a way that an attacke...

  • EPSS 1.41%
  • Published 13.10.2023 07:15:40
  • Last modified 21.11.2024 08:13:07

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that co...

  • EPSS 0.33%
  • Published 13.10.2023 07:15:39
  • Last modified 21.11.2024 07:51:12

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read by an admin-privileg...

  • EPSS 0.32%
  • Published 13.10.2023 07:15:38
  • Last modified 21.11.2024 07:51:12

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to arbitrary file system read. A high-priv...

  • EPSS 1.02%
  • Published 12.09.2023 08:15:12
  • Last modified 21.11.2024 06:49:47

Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability. Exploitation of this issue does not require user interaction and could result in a post-authentication arbitrary cod...

  • EPSS 0.7%
  • Published 09.08.2023 08:15:09
  • Last modified 21.11.2024 08:13:05

Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by a XML Injection (aka Blind XPath Injection) vulnerability that could lead in minor arbitrary file system read. Exploitation of this issu...

  • EPSS 3.43%
  • Published 09.08.2023 08:15:09
  • Last modified 21.11.2024 08:13:05

Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead to arbitrary...

  • EPSS 0.13%
  • Published 09.08.2023 08:15:09
  • Last modified 21.11.2024 08:13:05

Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Incorrect Authorization vulnerability that could lead to a Security feature bypass. A low-privileged attacker could leverage this vul...

  • EPSS 0.04%
  • Published 15.06.2023 19:15:11
  • Last modified 21.11.2024 07:56:48

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An admin privileged attacker could leverage this...

  • EPSS 0.17%
  • Published 15.06.2023 19:15:11
  • Last modified 21.11.2024 07:56:48

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Business Logic Errors vulnerability that could result in a security feature bypass. A low-privileged attacker could leverage this vulnera...