PKSA-2wt1-rrt9-7zvv Security Advisory
-
[MEDIUM] Magento Improper Authorization leads to Security feature bypass
PKSA-2wt1-rrt9-7zvv CVE-2024-39417 GHSA-4xmj-f664-hv98
Affected package: magento/community-edition
Affected version: =2.4.7|=2.4.6|=2.4.5|=2.4.4|<2.4.4-p10|>=2.4.5-p1,<2.4.5-p9|>=2.4.6-p1,<2.4.6-p7|>=2.4.7-beta1,<2.4.7-p2
Reported by:
GitHub