CVE-2021-21026
packagist/magento/community-edition
Improper Authorization
Magento does not sufficiently protect resources. Successful exploitation could lead to unauthorized access to restricted resources by an unauthenticated attacker. Access to the admin console is required for successful exploitation.
All versions before 2.3.6, all versions starting from 2.4.0 up to 2.4.1
Upgrade to versions 2.3.6, 2.4.1-p1 or above.
2021-02-18
source |