CVE-2023-32064: OroCommerce Customer Portal Incorrect Customer and Customer Group Frontend Menus pages visibility
Back-office users can access information about Customer and Customer User menus, bypassing ACL security restrictions due to insufficient security checks.
References
Detect and mitigate CVE-2023-32064 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →