writeups.xyz
/
Magento
Title
Vulnerabilities
Programs
Authors
Why nested deserialization is harmful: Magento XXE (CVE-2024-34102)
Insecure Deserialization
XXE
Patch Diffing
Security Code Review
Magento
Adam Kues (@Hash_kitten)
Shubham Shah (@Infosec_au)
Magento Template Engine, A Story Of CVE-2022-24086
SSTI
RCE
Security Code Review
Magento
Antoine Gicquel (@Blueshhit)
Magento – RCE & Local File Read with low privilege admin rights
LFI
RCE
Path Traversal
Magento
Daniel Le Gall (@Blaklis_)
Page 1 of 1