CVE-2021-39217
27.01.2023, 18:15
OpenMage LTS is an e-commerce platform. Prior to versions 19.4.22 and 20.0.19, Custom Layout enabled admin users to execute arbitrary commands via block methods. Versions 19.4.22 and 20.0.19 contain patches for this issue.
Vendor | Product | Version |
---|---|---|
openmage | magento | 𝑥 < 19.4.22 |
openmage | magento | 20.0.0 ≤ 𝑥 < 20.0.19 |
𝑥
= Vulnerable software versions
References