Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Improper Input Validation
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • M
Server-side Request Forgery (SSRF)
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • M
Improper Input Validation
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • C
XML Injection
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • H
Improper Input Validation
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • H
Directory Traversal
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • H
XML Injection
magento/community-edition>=2.4.0, <2.4.2-p2<2.3.7-p1Composer11 Sept 2021
  • L
Information Exposure
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Improper Authorization
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Improper Input Validation
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Authorization Bypass
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Improper Authorization
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Cross-site Scripting (XSS)
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Directory Traversal
magento/community-edition>=2.4.0, <2.4.2-p1<2.3.7Composer12 May 2021
  • M
Session Fixation
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
XML External Entity (XXE) Injection
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Access Restriction Bypass
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Access Restriction Bypass
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Improper Access Control
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Arbitrary File Upload
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Cross-site Request Forgery (CSRF)
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Access Restriction Bypass
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Improper Input Validation
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • L
Improper Authorization
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • L
SQL Injection
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • H
Access Restriction Bypass
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021
  • M
Session Fixation
magento/community-edition<2.3.6-p1>=2.4.0, <2.4.2Composer10 Feb 2021