Description
Magento Community Edition and Enterprise Edition before 2.0.10 and 2.1.x before 2.1.2 have CSRF resulting in deletion of a customer address from an address book, aka APPSEC-1433.
Remediation
References
Related Vulnerabilities
WordPress Plugin iQ Block Country Unspecified Vulnerability (1.1.33)
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2024-25608)
WebLogic CVE-2021-2064 Vulnerability (CVE-2021-2064)
PostgreSQL Improper Input Validation Vulnerability (CVE-2013-0255)
PHP Incorrect Conversion between Numeric Types Vulnerability (CVE-2016-3074)