Security Advisory

CVE-2019-7854

7.5
HIGH

Vulnerability Description

An insecure direct object reference (IDOR) vulnerability in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2 can lead to unauthorized disclosure of company credit history details.
Published Date August 2, 2019
Official Source NIST NVD Advisory