Magento 2.4.6 XSLT Server Side Injection / Command Execution

Discussion in 'News Aggregator' started by Packet Storm, 18 Nov 2023.

  1. Packet Storm

    Packet Storm Guest

    Magento version 2.4.6 suffers from an XSLT server side injection vulnerability that allows for remote command execution.

    Continue reading...
     

Share This Page

Loading...