Known Vulnerabilities for Magento Open Source by Adobe
Listed below are 10 of the newest known vulnerabilities associated with "Magento Open Source" by "Adobe".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-22251 json | Adobe Commerce versions 2.4.4-p2 (and earlier) and 2.4.5-p1 (and earlier) are affected by an Incorrect Authorization vulnerab... | 4.3 - MEDIUM | 2023-03-27 | 2023-04-04 |
| CVE-2023-22250 json | Adobe Commerce versions 2.4.4-p2 (and earlier) and 2.4.5-p1 (and earlier) are affected by an Improper Access Control vulnerab... | 5.3 - MEDIUM | 2023-03-27 | 2023-04-04 |
| CVE-2023-22249 json | Adobe Commerce versions 2.4.4-p2 (and earlier) and 2.4.5-p1 (and earlier) are affected by a stored Cross-Site Scripting (XSS)... | 4.8 - MEDIUM | 2023-03-27 | 2023-04-04 |
| CVE-2023-22247 json | Adobe Commerce versions 2.4.4-p2 (and earlier) and 2.4.5-p1 (and earlier) are affected by an XML Injection vulnerability that... | 7.5 - HIGH | 2023-03-27 | 2023-04-04 |
| CVE-2022-35698 json | Adobe Commerce versions 2.4.4-p1 (and earlier) and 2.4.5 (and earlier) are affected by a Stored Cross-site Scripting vulnerab... | 5.4 - MEDIUM | 2022-10-14 | 2022-10-19 |
| CVE-2022-35689 json | Adobe Commerce versions 2.4.4-p1 (and earlier) and 2.4.5 (and earlier) are affected by an Improper Access Control vulnerabili... | 5.3 - MEDIUM | 2022-10-14 | 2022-10-19 |
| CVE-2022-24093 json | Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulner... | 7.2 - HIGH | 2023-09-12 | 2023-09-18 |
| CVE-2021-39864 json | Adobe Commerce versions 2.4.2-p2 (and earlier), 2.4.3 (and earlier) and 2.3.7p1 (and earlier) are affected by a cross-site re... | 6.5 - MEDIUM | 2021-10-15 | 2021-10-21 |
| CVE-2021-36044 json | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper inp... | 7.5 - HIGH | 2021-09-01 | 2021-09-08 |
| CVE-2021-36043 json | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a blind SSRF vu... | 6.6 - MEDIUM | 2021-09-01 | 2021-09-08 |