Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-qpgq-5g92-j5q8 | Magento LTS Vulnerable to Open Redirect via Unvalidated `uenc` Parameter in `stockAction()` |
Fri, 15 May 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Magento Long Term Support (LTS) is an unofficial, community-driven project provides an alternative to the Magento Community Edition e-commerce platform with a high level of backward compatibility. Prior to 20.18.0, Mage_ProductAlert_AddController::stockAction() reads the uenc query parameter and passes it directly to $this->_redirectUrl($backUrl) without calling $this->_isUrlInternal(). When the supplied product_id does not match any catalog product, the server issues an unvalidated HTTP 302 redirect to whatever URL was provided as uenc. This vulnerability is fixed in 20.18.0. | |
| Title | Magento LTS: Open Redirect via Unvalidated `uenc` Parameter in `stockAction()` - magento-lts | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-15T17:50:25.297Z
Reserved: 2026-04-25T05:04:37.027Z
Link: CVE-2026-42207
No data.
Status : Received
Published: 2026-05-15T17:16:46.757
Modified: 2026-05-15T19:16:58.243
Link: CVE-2026-42207
No data.
OpenCVE Enrichment
Updated: 2026-05-15T18:30:05Z
Github GHSA