CVE-2026-25523 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Magento-lts is a long-term support alternative to Magento Community Edition (CE). Prior to version 20.16.1, the admin url can be discovered without prior knowle…
Medium CVSS: 5.3

CVE-2026-25523

Magento-lts is a long-term support alternative to Magento Community Edition (CE). Prior to version 20.16.1, the admin url can be discovered without prior knowledge of it's location by exploiting the X-Original-Url header on some configurations. This issue has been patched in version 20.16.1.
Vendor
Openmage
Product
Magento
CWE
CWE-200
Yayın Tarihi
2026-02-04 22:15:59
Güncelleme
2026-02-20 20:57:08
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar