cve-2024-34102
There are 7 repositories under cve-2024-34102 topic.
bughuntar/CVE-2024-34102
Exploitation CVE-2024-34102
wubinworks/magento2-jwt-auth-patch
Fix the JWT authentication vulnerability on certain Magento 2 versions. Deny tokens issued by old encryption key. If you cannot upgrade Magento or cannot apply the official patch, try this one.
wubinworks/magento2-cosmic-sting-patch
An alternative solution(as a Magento 2 extension) to fix the XXE vulnerability CVE-2024-34102(aka Cosmic Sting). If you cannot upgrade Magento or cannot apply the official patch, try this one.
bughuntar/CVE-2024-34102-Python
CVE-2024-34102 Exploiter based on Python
wubinworks/magento2-encryption-key-manager-cli
A utility for Magento 2 encryption key rotation and management. CVE-2024-34102(aka Cosmic Sting) victims can use it as an aftercare.
wubinworks/magento2-enhanced-xml-security
A replacement of `\Magento\Framework\Xml\Security` for Magento 2 with enhanced XML Security.
SamJUK/cosmicsting-validator
CosmicSting (CVE-2024-34102) POC / Patch Validator