Libraries tagged by cve-2024-34102

wubinworks/module-cosmic-sting-patch

1 Favers
85 Downloads

An alternative solution(as a Magento 2 extension) to fix the XXE vulnerability CVE-2024-34102(aka Cosmic Sting). If you cannot upgrade Magento or cannot apply the official patch, try this one.

Go to Download


wubinworks/module-xml-security

0 Favers
21 Downloads

A replacement of `\Magento\Framework\Xml\Security` for Magento 2 with enhanced security.

Go to Download


wubinworks/module-jwt-auth-patch

2 Favers
1 Downloads

Fix the JWT authentication vulnerability on certain Magento 2 versions. Deny tokens issued by old encryption key. If you cannot upgrade Magento or cannot apply the official patch, try this one.

Go to Download


wubinworks/module-encryption-key-manager-cli

0 Favers
6 Downloads

A utility for Magento 2 encryption key rotation and management. CVE-2024-34102(aka Cosmic Sting) victims can use it as an aftercare.

Go to Download