{"id":3544,"date":"2024-08-28T10:51:05","date_gmt":"2024-08-28T10:51:05","guid":{"rendered":"https:\/\/meetanshi.com\/blog\/magento-2-vuln-27015-patch-for-cve-2024-34102\/"},"modified":"2025-04-21T09:36:09","modified_gmt":"2025-04-21T04:06:09","slug":"magento-2-vuln-27015-patch-for-cve-2024-34102","status":"publish","type":"post","link":"https:\/\/meetanshi.com\/blog\/magento-2-vuln-27015-patch-for-cve-2024-34102\/","title":{"rendered":"Magento 2 VULN-27015 Patch for CVE-2024-34102: Learn Here"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Adobe has released an urgent security update,\u00a0APSB24-40, which is specifically targeting the CVE-2024-34102 vulnerability for its Adobe Commerce and Magento Open Source platform.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Here, I will cover the important elements of this security update, which will help you keep your Magento store protected and safe from any security risks.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"why\">Why the APSB24-40 Security Update?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">On June 27, 2024, Adobe released an isolated patch for CVE-2024-34102. Since the patch has been exploited, it has affected their Adobe Commerce merchant.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This new Adobe security update, APSB24-40, protects the potential exploits targeting the CVE-2024-34102 vulnerability.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"which\">Which are the Affected Products &amp; Versions?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Here are the affected products and their versions.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><th colspan=\"7\"><strong>Affected Products, Versions, and Platforms<\/strong><\/th><\/tr><tr><th><strong>Product<\/strong><\/th><th><strong>Versions&nbsp;<\/strong><\/th><th><strong>Platform&nbsp;<\/strong><\/th><\/tr><\/thead><tbody><tr><td>Adobe Commerce<\/td><td>2.4.7 and earlier2.4.6-p5 and earlier2.4.5-p7 and earlier2.4.4-p8 and earlier2.4.3-ext-7 and earlier*2.4.2-ext-7 and earlier*<\/td><td>All<\/td><\/tr><tr><td>Magento Open Source<\/td><td>2.4.7 and earlier2.4.6-p5 and earlier2.4.5-p7 and earlier2.4.4-p8 and earlier<\/td><td>All<\/td><\/tr><tr><td>Adobe Commerce Webhooks Plugin<\/td><td>1.2.0 to 1.4.0<\/td><td>Manual Plugin Installation<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"solution\">Solution to Stay Away From The Vulnerability<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Adobe has come up with a security update version to address the latest security vulnerabilities and provided a fix for the CVE-2024-34102 vulnerability.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Here are the detailed instructions for it.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><th><strong>Product<\/strong><\/th><th><strong>Updated Version<\/strong><\/th><th><strong>Installation Instructions<\/strong><\/th><\/tr><\/thead><tbody><tr><td>Adobe Commerce<\/td><td>2.4.7-p1 for 2.4.7 and earlier2.4.6-p6 for 2.4.6-p5 and earlier2.4.5-p8 for 2.4.5-p7 and earlier2.4.4-p9 for 2.4.4-p8 and earlier2.4.3-ext-8 for 2.4.3-ext-7 and earlier*2.4.2-ext-8 for 2.4.2-ext-7 and earlier*<\/td><td><a href=\"https:\/\/experienceleague.adobe.com\/en\/docs\/commerce-operations\/release\/notes\/adobe-commerce\/overview\" target=\"_blank\" rel=\"noreferrer noopener\">2.4.x release notes<\/a><\/td><\/tr><tr><td>Magento Open Source<\/td><td>2.4.7-p1 for 2.4.7 and earlier2.4.6-p6 for 2.4.6-p5 and earlier2.4.5-p8 for 2.4.5-p7 and earlier2.4.4-p9 for 2.4.4-p8 and earlier<\/td><td><a href=\"https:\/\/experienceleague.adobe.com\/en\/docs\/commerce-operations\/release\/notes\/adobe-commerce\/overview\" target=\"_blank\" rel=\"noreferrer noopener\">2.4.x release notes<\/a><\/td><\/tr><tr><td>Adobe Commerce Webhooks Plugin<\/td><td>1.5.0<\/td><td><a href=\"https:\/\/experienceleague.adobe.com\/en\/docs\/commerce-operations\/upgrade-guide\/modules\/upgrade\" target=\"_blank\" rel=\"noreferrer noopener\">Upgrade Modules and Extensions<\/a><\/td><\/tr><tr><td>Adobe Commerce and Magento Open Source<\/td><td>Isolated patch for CVE-2024-34102: ACSD-60241Works with all Adobe Commerce and Magento Open Source versions (2.4.4 \u2013 2.4.7)<\/td><td><a href=\"https:\/\/experienceleague.adobe.com\/en\/docs\/commerce-knowledge-base\/kb\/troubleshooting\/known-issues-patches-attached\/security-update-available-for-adobe-commerce-apsb24-40-revised-to-include-isolated-patch-for-cve-2024-34102\" target=\"_blank\" rel=\"noreferrer noopener\">Release Notes for Isolated Patch&nbsp;<\/a><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"safeguard\">Safeguard Your Store!<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Protect your store from such vulnerabilities using this latest security update from Adobe. If you need technical help or a professional&nbsp;<a href=\"https:\/\/meetanshi.com\/magento-security-patches-installation-service.html\">Magento Patch Installation Service<\/a>, we are just a click away to safeguard your store from such security vulnerabilities.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Adobe has released an urgent security update,\u00a0APSB24-40, which is specifically targeting the CVE-2024-34102 vulnerability for its Adobe Commerce and Magento Open Source platform. Here, I&#8230;<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[34],"tags":[],"class_list":["post-3544","post","type-post","status-publish","format-standard","hentry","category-magento"],"acf":[],"_links":{"self":[{"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/posts\/3544","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/comments?post=3544"}],"version-history":[{"count":3,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/posts\/3544\/revisions"}],"predecessor-version":[{"id":12398,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/posts\/3544\/revisions\/12398"}],"wp:attachment":[{"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/media?parent=3544"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/categories?post=3544"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/meetanshi.com\/blog\/wp-json\/wp\/v2\/tags?post=3544"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}