CVE-2024-37294

Aimeos is an Open Source e-commerce framework for online shops. All SaaS and marketplace setups using Aimeos version from 2022/2023/2024 are affected by a potential denial of service attack. Users should upgrade to versions 2022.10.17, 2023.10.17, or 2024.04 of the aimeos/aimeos-core package to receive a patch.
Configurations

No configuration.

History

21 Nov 2024, 09:23

Type Values Removed Values Added
References () https://github.com/aimeos/aimeos-core/security/advisories/GHSA-xjm6-jfmg-qc6p - () https://github.com/aimeos/aimeos-core/security/advisories/GHSA-xjm6-jfmg-qc6p -

13 Jun 2024, 18:36

Type Values Removed Values Added
Summary
  • (es) Aimeos es un framework de comercio electrónico de código abierto para tiendas online. Todas las configuraciones de SaaS y de mercado que utilizan la versión de Aimeos de 2022/2023/2024 se ven afectadas por un posible ataque de denegación de servicio. Los usuarios deben actualizar a las versiones 2022.10.17, 2023.10.17 o 2024.04 del paquete aimeos/aimeos-core para recibir un parche.

11 Jun 2024, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-11 15:16

Updated : 2024-11-21 09:23


NVD link : CVE-2024-37294

Mitre link : CVE-2024-37294

CVE.ORG link : CVE-2024-37294


JSON object : View

Products Affected

No product.

CWE
CWE-270

Privilege Context Switching Error