aimeos/aimeos-core Security Advisories for 2024.04.3 (2)
-
[HIGH] Remote code execution in web server context
PKSA-t9rv-cy1f-4ts7 CVE-2024-37295 GHSA-rhc2-23c2-ww7c
Affected version: >=2024.04.1,<2024.04.5
Reported by:
GitHub -
[MEDIUM] Aimeos denial of service vulnerability in SaaS and marketplace setups
PKSA-j29m-wv5j-xkf9 CVE-2024-37294 GHSA-xjm6-jfmg-qc6p
Affected version: >=2022.04.1,<2022.10.17|>=2023.04.1,<2023.10.17|>=2024.04.1,<2024.04.7
Reported by:
GitHub