CVE-2026-34652
- EPSS 0.51%
- Veröffentlicht 12.05.2026 19:50:29
- Zuletzt bearbeitet 20.05.2026 17:12:21
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in an application denial-of-service. An attacker cou...
CVE-2026-34653
- EPSS 0.61%
- Veröffentlicht 12.05.2026 19:50:29
- Zuletzt bearbeitet 20.05.2026 16:02:39
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary file s...
CVE-2026-34645
- EPSS 0.56%
- Veröffentlicht 12.05.2026 19:50:28
- Zuletzt bearbeitet 20.05.2026 17:28:44
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabilit...
CVE-2026-34648
- EPSS 22.55%
- Veröffentlicht 12.05.2026 19:50:27
- Zuletzt bearbeitet 20.05.2026 17:27:51
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this v...
CVE-2026-34649
- EPSS 14.38%
- Veröffentlicht 12.05.2026 19:50:26
- Zuletzt bearbeitet 20.05.2026 17:13:54
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this v...
CVE-2026-34655
- EPSS 0.37%
- Veröffentlicht 12.05.2026 19:50:25
- Zuletzt bearbeitet 20.05.2026 15:59:10
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into...
CVE-2026-34654
- EPSS 0.62%
- Veröffentlicht 12.05.2026 19:50:24
- Zuletzt bearbeitet 20.05.2026 16:02:13
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in an application denial-of-service. An attacker cou...
CVE-2026-34651
- EPSS 0.68%
- Veröffentlicht 12.05.2026 19:50:23
- Zuletzt bearbeitet 20.05.2026 17:13:06
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this v...
CVE-2026-34646
- EPSS 0.41%
- Veröffentlicht 12.05.2026 19:50:22
- Zuletzt bearbeitet 20.05.2026 17:28:28
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabilit...
CVE-2026-21291
- EPSS 0.27%
- Veröffentlicht 11.03.2026 02:19:24
- Zuletzt bearbeitet 11.03.2026 18:21:44
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts int...