Magento Insufficient Verification of Data Authenticity Vulnerability - CVE-2019-8124 - Vulnerability Database

Magento Insufficient Verification of Data Authenticity Vulnerability - CVE-2019-8124

High
Reference: CVE-2019-8124
Title: Magento Insufficient Verification of Data Authenticity Vulnerability
Overview:

An insufficient logging and monitoring vulnerability exists in Magento 2.1 prior to 2.1.19 Magento 2.2 prior to 2.2.10 Magento 2.3 prior to 2.3.3. Failure to track admin actions related to design configuration could lead to repudiation attacks.