A cross-site request forgery (CSRF) vulnerability exists in the checkout cart item of Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This could be exploited at the time of editing or configuration.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2019-08-02T21:15:08
Updated: 2024-08-04T21:02:18.914Z
Reserved: 2019-02-12T00:00:00
Link: CVE-2019-7865
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-08-02T22:15:15.550
Modified: 2024-11-21T04:48:53.163
Link: CVE-2019-7865
Redhat
No data.