Security Advisory

CVE-2020-9587

7.5
HIGH

Vulnerability Description

Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have an authorization bypass vulnerability. Successful exploitation could lead to potentially unauthorized product discounts.
Published Date June 26, 2020
Official Source NIST NVD Advisory