A vulnerability, which was classified as critical, was found in Adobe Magento up to 2.3.6-p1/2.4.1-p1/2.4.2. Affected is some unknown processing of the component Create Customer Endpoint. Upgrading to version 2.3.7 or 2.4.2-p1 eliminates this vulnerability.
Adobe Magento up to 2.3.6-p1/2.4.1-p1/2.4.2 Create Customer Endpoint improper authorization
- Virtual Patching
- June 29, 2021
- 6:05 am
CVE-2024-52587 : STEP-SECURITY HARDEN-RUNNER UP TO 2.10.1 ENVIRONMENT VARIABLE OS COMMAND INJECTION
Description StepSecurity’s Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. Versions of step-security/harden-runner prior to
CVE-2024-50282 : LINUX KERNEL UP TO 6.11.7 AMD GPU AMDGPU_DEBUGFS_GPRWAVE_READ BUFFER OVERFLOW
Description In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a
CVE-2024-50919 : JPRESS 5.1.1 ON WINDOWS JSP FILE UNRESTRICTED UPLOAD
Description Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file formats such