A denial-of-service vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. Under certain conditions, an unauthenticated attacker could force the Magento store's full page cache to serve a 404 page to customers.
References
Link | Resource |
---|---|
https://magento.com/security/patches/magento-2.3.2-2.2.9-and-2.1.18-security-update-13 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-08-02 15:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-7915
Mitre link : CVE-2019-7915
JSON object : View
CWE
Products Affected
magento
- magento