CVE-2024-39325

aimeos/ai-controller-frontend is the Aimeos frontend controller. Prior to versions 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15, aimeos/ai-controller-frontend doesn't reset the payment status of a user's basket after the user completes a purchase. Versions 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15 fix this issue.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*
cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*
cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*
cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*
cpe:2.3:a:aimeos:aimeos_frontend_controller:2024.04.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-07-02 21:15

Updated : 2024-11-21 09:27


NVD link : CVE-2024-39325

Mitre link : CVE-2024-39325

CVE.ORG link : CVE-2024-39325


JSON object : View

Products Affected

aimeos

  • aimeos_frontend_controller
CWE
CWE-841

Improper Enforcement of Behavioral Workflow

NVD-CWE-Other