Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by a Cross-Site Request Forgery (CSRF) vulnerability that could allow an attacker to bypass security features and perform minor integrity changes on behalf of a user. The vulnerability could be exploited by tricking a victim into clicking a link or loading a page that submits a malicious request. Exploitation of this issue does not require user interaction.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.4.3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p7"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p8"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p9"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p7"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p8"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-b1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-b2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p7"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p8"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.4-p9"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p7"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.5-p8"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p3"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p4"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p5"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.6-p6"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-b1"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-b2"
},
{
"introduced": "0"
},
{
"last_affected": "2.4.7-p1"
}
]
}