Nov. 17, 2023, 3:07 p.m. |

Packet Storm packetstormsecurity.com

Magento version 2.4.6 suffers from an XSLT server side injection vulnerability that allows for remote command execution.

command injection magento server server side version vulnerability xslt

Security Operations Program Manager

@ Microsoft | Redmond, Washington, United States

Sr. Network Security engineer

@ NXP Semiconductors | Bengaluru (Nagavara)

DevSecOps Engineer

@ RP Pro Services | Washington, District of Columbia, United States

Consultant RSSI H/F

@ Hifield | Sèvres, France

TW Senior Test Automation Engineer (Access Control & Intrusion Systems)

@ Bosch Group | Taipei, Taiwan

Cyber Security, Senior Manager

@ Triton AI Pte Ltd | Singapore, Singapore, Singapore