PKSA-9sgb-46vm-jrm8 Security Advisory
-
[MEDIUM] Magento Open Source allows SQL Injection
PKSA-9sgb-46vm-jrm8 CVE-2023-38249 GHSA-rq36-9f5f-2gw7
Affected package: magento/community-edition
Affected version: >=2.4.4-p1,<2.4.4-p6|>=2.4.5-p1,<2.4.5-p5|>=2.4.6-p1,<2.4.6-p3|=2.4.4|=2.4.5|=2.4.6|=2.4.7|=2.4.7-beta1
Reported by:
GitHub