Security: oroinc/orocommerce
Security Advisories
View information about security vulnerabilities from this repository's maintainers.
-
Storefront user can access history and most viewed data from matching back-office user with the same IDGHSA-v7px-46v9-5qwp published
Mar 25, 2024 by dkhrysevModerate -
get-totals-for-checkout API endpoint returns unwanted dataGHSA-88g2-xgh9-4ph2 published
Nov 27, 2023 by dkhrysevModerate -
Incorrect Customer and Customer Group Frontend Menus pages visibilityGHSA-8gwj-68w6-7v6c published
Nov 27, 2023 by dkhrysevModerate -
XSS vulnerability in add note dialog of Shopping List line itemGHSA-2jc6-3fhj-8q84 published
Oct 9, 2023 by dkhrysevModerate -
XSS vulnerability when add class name to Selector Manager on pages that uses GrapeJS editorGHSA-6f85-3f8q-qc94 published
Jul 14, 2022 by rgrebenchukModerate -
XSS vulnerability during shipping rule editing for UPS integrationGHSA-4vf4-955g-vxp2 published
Oct 17, 2022 by rgrebenchukModerate