Description
Magento versions 2.3.5-p1 and earlier, and 2.3.5-p1 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Remediation
References
Related Vulnerabilities
WordPress Plugin Migration, Backup, Staging-WPvivid PHAR Deserialization (0.9.74)
Sqlite NULL Pointer Dereference Vulnerability (CVE-2019-19880)
WordPress Plugin Qtranslate Slug Cross-Site Request Forgery (1.1.18)
WordPress Plugin BackWPup Unspecified Vulnerability (3.4.3)
WordPress Plugin Answer My Question Cross-Site Scripting (1.3)