cbcvebase.
CVE-2024-20716
published 2024-02-15

CVE-2024-20716: Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to an…

medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to an application denial-of-service. A high-privileged attacker could leverage this vulnerability to exhaust system resources, causing the application to slow down or crash. Exploitation of this issue does not require user interaction.

Affected

8 ranges
VendorProductVersion rangeFixed in
adobeadobe_commerce<= 2.4.4-p6
adobecommerce
adobecommerce
adobecommerce
magentocommunity-edition>= 2.4.4-p1 < 2.4.4-p72.4.4-p7
magentocommunity-edition>= 2.4.5-p1 < 2.4.5-p62.4.5-p6
magentocommunity-edition>= 2.4.6-p1 < 2.4.6-p42.4.6-p4
magentoproject-community-edition0 – 2.0.2