#VU59925 Improper input validation in Oracle Commerce Platform - CVE-2022-21387
Published: January 23, 2022
Oracle Commerce Platform
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The vulnerability exists due to improper input validation within the Dynamo Application Framework component in Oracle Commerce Platform. A remote non-authenticated attacker can exploit this vulnerability to gain access to sensitive information.