İçeriğe atla
Noroxi

oroinc kayıtları

oroinc üreticisine ait 13 yayımlanmış kayıt.

Tüm kayıtlar

13 kayıt
  • CVE-2022-41951
    39İzleyin

    OroPlatform vulnerable to path traversal during temporary file manipulations

    KritikCVSS 9,8İstismar yokEPSS %1

    oroinc · oroplatform27 Kas 2023

  • CVE-2021-43852
    35İzleyin

    JavaScript Prototype Pollution in oro/platform

    YüksekCVSS 8,8İstismar yokEPSS %1

    oroinc · oroplatform4 Oca 2022

  • CVE-2024-50677
    24İzleyin

    A cross-site scripting (XSS) vulnerability in OroPlatform CMS v5.1 allows attackers to execute arbitrary web scripts or HTML via a crafted p

    OrtaCVSS 6,1Kavram kanıtıEPSS %1

    oroinc · oroplatform6 Ara 2024

  • CVE-2023-32065
    23İzleyin

    OroCommerce get-totals-for-checkout API endpoint returns unwanted data

    OrtaCVSS 5,8İstismar yokEPSS %0

    oroinc · orocommerce28 Kas 2023

  • CVE-2022-31037
    21İzleyin

    OroCommerce vulnerable to Cross-site Scripting via Shipping rule editing page

    OrtaCVSS 5,4İstismar yokEPSS %0

    oroinc · orocommerce18 Eki 2022

  • CVE-2021-39198
    21İzleyin

    The disqualify lead action may be executed without CSRF token check

    OrtaCVSS 5,4İstismar yokEPSS %0

    oroinc · client relationship management19 Kas 2021

  • CVE-2023-32063
    20İzleyin

    OroCRMCallBundle has incorrect call view page visibility

    OrtaCVSS 5,0İstismar yokEPSS %1

    oroinc · client relationship management28 Kas 2023

  • CVE-2021-41236
    19İzleyin

    XSS vulnerability in oro/platform

    OrtaCVSS 4,8İstismar yokEPSS %1

    oroinc · oroplatform4 Oca 2022

  • CVE-2022-35950
    19İzleyin

    OroCommerce Cross-site Scripting vulnerability in add note dialog of Shopping List line item

    OrtaCVSS 4,8İstismar yokEPSS %0

    oroinc · orocommerce9 Eki 2023

  • CVE-2023-32062
    17İzleyin

    OroCalendarBundle has incorrect system calendar events visibility

    OrtaCVSS 4,3İstismar yokEPSS %1

    oroinc · oroplatform27 Kas 2023

  • CVE-2023-32064
    17İzleyin

    OroCommerce Customer Portal Incorrect Customer and Customer Group Frontend Menus pages visibility

    OrtaCVSS 4,3İstismar yokEPSS %0

    oroinc · orocommerce28 Kas 2023

  • CVE-2023-45824
    17İzleyin

    OroPlatform's pinned entity creation form shows pages of other users

    OrtaCVSS 4,3İstismar yokEPSS %0

    oroinc · oroplatform25 Mar 2024

  • CVE-2023-48296
    17İzleyin

    OroPlatform's storefront user can access history and most viewed data from matching back-office user with the same ID

    OrtaCVSS 4,3İstismar yokEPSS %0

    oroinc · oroplatform25 Mar 2024