{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-10T04:54:29.029","vulnerabilities":[{"cve":{"id":"CVE-2024-39325","sourceIdentifier":"security-advisories@github.com","published":"2024-07-02T21:15:11.433","lastModified":"2024-11-21T09:27:28.000","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"aimeos/ai-controller-frontend is the  Aimeos frontend controller. Prior to versions 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15, aimeos/ai-controller-frontend doesn't reset the payment status of a user's basket after the user completes a purchase. Versions 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8, and 2020.10.15 fix this issue.\n"},{"lang":"es","value":"aimeos/ai-controller-frontend es el controlador frontend de Aimeos. Antes de las versiones 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8 y 2020.10.15, aimeos/ai-controller-frontend no restablece el estado de pago de la cesta de un usuario después de que el usuario completa una compra. Las versiones 2024.04.2, 2023.10.9, 2022.10.8, 2021.10.8 y 2020.10.15 solucionan este problema."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-841"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*","versionEndExcluding":"2020.10.15","matchCriteriaId":"05061318-1635-43D5-A3AC-D50C5DBF09B5"},{"vulnerable":true,"criteria":"cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*","versionStartIncluding":"2021.04.1","versionEndExcluding":"2021.10.8","matchCriteriaId":"E56BF038-B298-4A8C-9A06-188F422058A0"},{"vulnerable":true,"criteria":"cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*","versionStartIncluding":"2022.04.1","versionEndExcluding":"2022.10.8","matchCriteriaId":"85A13E16-25D0-4845-88B6-4C19AF1AC33D"},{"vulnerable":true,"criteria":"cpe:2.3:a:aimeos:aimeos_frontend_controller:*:*:*:*:*:*:*:*","versionStartIncluding":"2023.04.1","versionEndExcluding":"2023.10.9","matchCriteriaId":"F2D983DE-A57B-46AD-911E-44253A9A0373"},{"vulnerable":true,"criteria":"cpe:2.3:a:aimeos:aimeos_frontend_controller:2024.04.1:*:*:*:*:*:*:*","matchCriteriaId":"9707F760-DC26-4879-8BB0-EA49A1E415B1"}]}]}],"references":[{"url":"https://github.com/aimeos/ai-controller-frontend/commit/16b8837d2466e3665b3c826ce87934b01a847268","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/24a57001e56759d1582d2a0080fc1ca3ba328630","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/28549808e0f6432a34cd3fb95556deeb86ca276d","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/b1960c0b6e5ee93111a5360c9ce949b3e7528cf7","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/dafa072783bb692f111ed092d9d2932c113eb855","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/security/advisories/GHSA-m9gv-6p22-qgmj","source":"security-advisories@github.com","tags":["Vendor Advisory"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/16b8837d2466e3665b3c826ce87934b01a847268","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/24a57001e56759d1582d2a0080fc1ca3ba328630","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/28549808e0f6432a34cd3fb95556deeb86ca276d","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/b1960c0b6e5ee93111a5360c9ce949b3e7528cf7","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/commit/dafa072783bb692f111ed092d9d2932c113eb855","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://github.com/aimeos/ai-controller-frontend/security/advisories/GHSA-m9gv-6p22-qgmj","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}