100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2023-48296 oro/customer-portal is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 4.1.0 - 4.1.13, 4.2.0 - 4.2.10, 5.0.0 - 5.0.11 and 5.1.0 - 5.1.3. | 4.1.0 - 4.1.134.2.0 - 4.2.105.0.0 - 5.0.11 +1 more | Medium |
CVE-2023-32064 oro/customer-portal is vulnerable to Improper Access Control in versions 4.2.0 - 4.2.8, 5.0.0 - 5.0.11 and 5.1.0 - 5.1.1. | 4.2.0 - 4.2.85.0.0 - 5.0.115.1.0 - 5.1.1 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
oro/commerce Version 7.0.* | — | — |
oro/platform Version 7.0.* | — | — |
oro/marketing Version 7.0.* | — | — |
oro/calendar-bundle Version 7.0.* | — | — |
oro/platform-serialised-fields Version 7.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant