CVE-2020-9691 in Magento and Adobe Products
Published on July 29, 2020
Magento versions 2.3.5-p1 and earlier, and 2.3.5-p1 and earlier have a dom-based cross-site scripting vulnerability. Successful exploitation could lead to arbitrary code execution.
Products Associated with CVE-2020-9691
stack.watch emails you whenever new vulnerabilities are published in Magento or Adobe Magento. Just hit a watch button to start following.
Affected Versions
Adobe Magento Version 2.3.5-p1 and earlier, and 2.3.5-p1 and earlier versions is affected by CVE-2020-9691Exploit Probability
EPSS
0.65%
Percentile
70.61%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.