Advisories for Composer/Magento/Module-Upward-Connector package

2021

Path Traversal

Magento UPWARD-php An attacker could potentially exploit this vulnerability to upload a malicious YAML file that can contain instructions which allows reading arbitrary files from the remote server. Access to the admin console is required for successful exploitation.