Lucene search

K
osvGoogleOSV:GHSA-P7M7-J8JV-393Q
HistoryMay 24, 2022 - 5:33 p.m.

Magento incorrect permissions vulnerability in the Inventory module

2022-05-2417:33:56
Google
osv.dev
7
magento
inventory module
incorrect permissions
vulnerability
software

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

38.6%

Magento version 2.4.0 and 2.3.5p1 (and earlier) are affected by an incorrect permissions issue vulnerability in the Inventory module. This vulnerability could be abused by authenticated users to modify inventory stock data without authorization.

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

38.6%