GHSA-g8pg-33v4-9r96HighCVSS 7.5Disclosed before NVD

Thelia authentication bypass vulnerability

Published
May 30, 2024
Last Modified
July 17, 2026

📋 Description

An authentication bypass was identifed in thelia/thelia project for customer and admin. This vulnerability is present from version 2.0.0-beta1 and is fixed in 2.1.3 and 2.2.0-alpha1.

🎯 Affected products1

  • composer/thelia/thelia:>= 2.0.0-beta1, < 2.1.3

🔗 References (6)