oro/platform Security Advisories for 4.2.10 (2)
-
[MEDIUM] Pinned entity creation form shows wrong data
PKSA-s86f-6mqr-z66d CVE-2023-45824 GHSA-vxq2-p937-3px3
Affected version: >=4.2.0,<=4.2.10|>=5.0.0,<=5.0.12|>=5.1.0,<=5.1.3
Reported by:
GitHub -
[HIGH] OroPlatform vulnerable to path traversal during temporary file manipulations
PKSA-t2jj-zmdx-jdvv CVE-2022-41951 GHSA-9v3j-4j64-p937
Affected version: >=5.0.0,<5.0.8|>=4.2.0,<=4.2.10|>=4.1.0,<=4.1.13
Reported by:
GitHub