← Back

CVE-2023-32065

nvd nist
Published: Nov 28, 2023Modified: Nov 21, 2024

JSON object

Loading...
5.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

OroCommerce is an open-source Business to Business Commerce application built with flexibility in mind. Detailed Order totals information may be received by Order ID. This issue is patched in version 5.0.11 and 5.1.1.

Affected (3)

Products: Oroinc: Orocommerce
1 product
Orocommerce
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Oroinc
From 4.2.0 to 4.2.10
From 5.0.0 to 5.0.11
From 5.1.0 to 5.1.1

References (2)

Source: security-advisories@github.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.