Описание
The Aimeos HTML client provides Aimeos HTML components for e-commerce projects. Starting in version 2020.04.1 and prior to versions 2020.10.27, 2021.10.21, 2022.10.12, 2023.10.14, and 2024.04.5, digital downloads sold in online shops can be downloaded without valid payment, e.g. if the payment didn't succeed. Versions 2020.10.27, 2021.10.21, 2022.10.12, 2023.10.14, and 2024.04.5 fix this issue.
Ссылки
EPSS
Процентиль: 51%
0.00278
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-841
Связанные уязвимости
CVSS3: 5.3
github
больше 1 года назад
Digital products download without proper payment status check
EPSS
Процентиль: 51%
0.00278
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-841