OroPlatform is a PHP Business Application Platform (BAP). A logged in user can access page state data of pinned pages of other users by pageId hash. This vulnerability is fixed in 5.1.4.
References
Configurations
History
No history.
Information
Published : 2024-03-25 19:15
Updated : 2025-03-10 15:21
NVD link : CVE-2023-45824
Mitre link : CVE-2023-45824
CVE.ORG link : CVE-2023-45824
JSON object : View
Products Affected
oroinc
- oroplatform
CWE
