Vulnerability Description
Magento-lts is a long-term support alternative to Magento Community Edition (CE). Prior to version 20.16.1, the admin url can be discovered without prior knowledge of it's location by exploiting the X-Original-Url header on some configurations. This issue has been patched in version 20.16.1.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openmage | Magento | <= 20.16.0 |
Related Weaknesses (CWE)
References
- https://github.com/OpenMage/magento-lts/security/advisories/GHSA-jg68-vhv3-9r8fVendor Advisory
- https://hackerone.com/bugs?subject=openmage&report_id=3416312Permissions Required
FAQ
What is CVE-2026-25523?
CVE-2026-25523 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Magento-lts is a long-term support alternative to Magento Community Edition (CE). Prior to version 20.16.1, the admin url can be discovered without prior knowledge of it's location by exploiting the X...
How severe is CVE-2026-25523?
CVE-2026-25523 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-25523?
Check the references section above for vendor advisories and patch information. Affected products include: Openmage Magento.