Improper Input Validation
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 126.96.36.199 and earlier, and 188.8.131.52 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
CWE-20 - Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.