Total vulnerabilities in the database
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.
Software | From | Fixed in |
---|---|---|
magento / magento | 2.2.0 | 2.2.11.x |
magento / magento | 2.3.0 | 2.3.4.x |
magento / magento | - | 1.9.4.4.x |
magento / magento | - | 1.14.4.4.x |