CVE-2016-10704
30.12.2017, 21:29
Magento Community Edition and Enterprise Edition before 2.0.10 and 2.1.x before 2.1.2 have XSS via e-mail templates that are mishandled during a preview, aka APPSEC-1503.
| Vendor | Product | Version |
|---|---|---|
| magento | magento | 𝑥 < 2.0.10 |
| magento | magento | 𝑥 < 2.0.10 |
| magento | magento | 2.1.0 ≤ 𝑥 < 2.1.2 |
| magento | magento | 2.1.0 ≤ 𝑥 < 2.1.2 |
𝑥
= Vulnerable software versions