Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2024-20716

Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to an application denial-of-service. A high-privileged attacker could leverage this vulnerability to exhaust system resources, causing the application to slow down or crash. Exploitation of this issue does not require user interaction.

  • Published: Feb 15, 2024
  • Updated: Feb 16, 2024
  • CVE: CVE-2024-20716
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.9
  • AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

CWEs:

Software From Fixed in
adobe / commerce 2.4.4 2.4.4.x
adobe / commerce 2.4.5 2.4.5.x
adobe / commerce 2.4.4-p1 2.4.4-p1.x
adobe / commerce 2.4.5-p1 2.4.5-p1.x
adobe / commerce 2.4.4-p2 2.4.4-p2.x
adobe / commerce 2.4.5-p2 2.4.5-p2.x
adobe / commerce 2.4.4-p3 2.4.4-p3.x
adobe / commerce 2.4.6 2.4.6.x
adobe / commerce 2.4.4-p4 2.4.4-p4.x
adobe / commerce 2.4.5-p3 2.4.5-p3.x
adobe / commerce 2.4.6-p1 2.4.6-p1.x
adobe / commerce 2.4.5-p4 2.4.5-p4.x
adobe / commerce 2.4.4-p5 2.4.4-p5.x
adobe / commerce 2.4.5-p5 2.4.5-p5.x
adobe / commerce 2.4.6-p2 2.4.6-p2.x
adobe / commerce 2.4.6-p3 2.4.6-p3.x
adobe / commerce 2.4.4-p6 2.4.4-p6.x