CVE-2019-7859

All FrameworksMagentoCWE-OtherCVE-2019-7859

CVE-2019-7859

State: PUBLISHED · Published: 2019-08-02 · Updated: 2024-08-04 · Assigner: adobe
Description
A path traversal vulnerability in the WYSIWYG editor for Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2 could result in unauthorized access to uploaded images due to insufficient access control.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/7xxx/CVE-2019-7859.json