-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| magento/community-edition | composer | < 2.3.6-p1 | 2.3.6-p1 |
| magento/community-edition | composer | >= 2.4.0, < 2.4.2 | 2.4.2 |
The patches provided are related to various security fixes, including OS command injection, CAPTCHA processing, rate limiting, and WYSIWYG validation. The vulnerable functions identified are those that are directly related to the security fixes and are likely to be involved in the exploitation of the vulnerabilities.