Loading HuntDB...

GHSA-x6mf-qhjj-pcj9

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. A high-privilege attacker could exploit this vulnerability by uploading a malicious file to the system, which could then be executed. Exploitation of this issue does not require user interaction.

Related CVEs

Key Information

GHSA ID
GHSA-x6mf-qhjj-pcj9
Published
June 13, 2024 9:31 AM
Last Modified
June 13, 2024 9:31 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 1, 2025 6:44 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.