cbcvebase.
CVE-2024-47173
published 2024-10-24

CVE-2024-47173: Aimeos is an e-commerce framework. All SaaS and marketplace setups using the Aimeos GraphQL API admin interface version from 2024.04 up to 2024.07.1 are…

PriorityP427medium5.5CVSS 3.1
AVNACLPRHUINSUCNILAH
EPSS
0.35%
26.7th percentile
Aimeos is an e-commerce framework. All SaaS and marketplace setups using the Aimeos GraphQL API admin interface version from 2024.04 up to 2024.07.1 are affected by a potential denial of service attack. Version 2024.07.2 fixes the issue.

Affected

2 ranges
VendorProductVersion rangeFixed in
aimeosai-admin-graphql
aimeosai-admin-graphql>= 2024.04.1 < 2024.07.22024.07.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.