Subscribe
CRITICAL

CVE-2016-4010

CVSS 9.8 Disclosed

Severity: CRITICAL (CVSS 9.8)

Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary PHP code via crafted serialized shopping cart data.

Published: 2017-01-23
Last Modified: 2026-05-13

References:


View Full CVE Details on NIST NVD โ†’