Critical Magento Flaws Allow Code Execution

(Source:Threatpost)… outside the web root folder. Another critical vulnerability (CVE-2020-9692) is a security mitigation bypass, which could also allow arbitrary code execution.