VYPR
Medium severity6.5NVD Advisory· Published Sep 14, 2017· Updated May 13, 2026

CVE-2017-13761

CVE-2017-13761

Description

The Fastly CDN module before 1.2.26 for Magento2, when used with a third-party authentication plugin, might allow remote authenticated users to obtain sensitive information from authenticated sessions via vectors involving caching of redirect responses.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
fastly/magento2Packagist
< 1.2.261.2.26

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.