5.3
CVSSv3

CVE-2022-35689

Published: 14/10/2022 Updated: 19/10/2022
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Adobe Commerce versions 2.4.4-p1 (and previous versions) and 2.4.5 (and previous versions) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to impact the availability of a user's minor feature. Exploitation of this issue does not require user interaction.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe commerce 2.4.4

adobe magento open source

adobe magento open source 2.4.5

adobe magento open source 2.4.4

adobe commerce 2.4.5

adobe commerce

Github Repositories

This repository contains potential security patches for the Magento APSB22-48 and CVE-2022-35698 security vulnerability

Official Magento Patches have been released: Magento Docs These patches address the same security issues as this repository does Except that we've added a few fixes to older Magento versions Security patches for APSB22-48 This repository contains Magento 2 Patch Files for the recently found security issues on 12-10-2022 The patch files aim to fix the CVE-2022-35698 and