aimeos/ai-controller-frontend
Packagist2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting aimeos/ai-controller-frontendpage 1 of 1
- CVE-2024-39319MEDIUMCVSS 5.3EG 5.3✓ Fixed in 2020.10.152024-09-26
vulnerable: 2016.07.1 ... 2020.10.9 (93 versions)
aimeos/ai-controller-frontend is the Aimeos frontend controller package for e-commerce projects. Prior to versions 2024.4.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15, an insecure direct object reference allows an attacker to disable…
- CVE-2024-39325MEDIUMCVSS 5.3EG 5.3✓ Fixed in 2020.10.152024-07-02
vulnerable: 2016.07.1 ... 2020.10.9 (93 versions)
aimeos/ai-controller-frontend is the Aimeos frontend controller. Prior to versions 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15, aimeos/ai-controller-frontend doesn't reset the payment status of a user's basket after the use…
Check whether aimeos/ai-controller-frontend is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for aimeos/ai-controller-frontend CVEs against the assets you own.
Start Free Scan →