target entity

Commerce and Magento Open Source

2 source-linked records in the current knowledge graph.

high

CVE-2024-34102: Adobe Commerce and Magento Open Source Improper Restriction of XML External Entity Reference (XXE) Vulnerability

Adobe Commerce and Magento Open Source contain an improper restriction of XML external entity reference (XXE) vulnerability that allows for remote code execution. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CVE-2024-34102EPSS 100.0%AdobeCommerce and Magento Open Source
CISA KEV ↗ · unattributed attribution