Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the checkout process. Exploitation of this issue does not require user interaction and could result in arbitrary code execution.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
GHSA-f8fv-f786-9933 | Magento improper input validation vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 21 Oct 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 21 Oct 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 04 Feb 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|

Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2025-10-21T19:46:12.863Z
Reserved: 2022-01-27T00:00:00.000Z
Link: CVE-2022-24086

Updated: 2024-08-03T03:59:23.565Z

Status : Modified
Published: 2022-02-16T17:15:13.307
Modified: 2025-10-21T20:19:02.313
Link: CVE-2022-24086

No data.

No data.