Adobe

Magento

191 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.64%
  • Veröffentlicht 11.03.2026 02:19:11
  • Zuletzt bearbeitet 28.08.2026 00:17:03

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a security feat...

  • EPSS 0.34%
  • Veröffentlicht 11.03.2026 02:19:10
  • Zuletzt bearbeitet 28.08.2026 00:16:53

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage th...

  • EPSS 0.3%
  • Veröffentlicht 11.03.2026 02:19:09
  • Zuletzt bearbeitet 28.08.2026 00:16:54

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts int...

  • EPSS 0.23%
  • Veröffentlicht 11.03.2026 02:19:08
  • Zuletzt bearbeitet 28.08.2026 00:16:52

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker could leverage this vulnerability to redirect users...

  • EPSS 0.36%
  • Veröffentlicht 14.10.2025 20:27:57
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Incorrect Authorization vulnerability. A low-privileged attacker could leverage this vulnerability to bypass security measures an...

  • EPSS 0.56%
  • Veröffentlicht 14.10.2025 20:27:56
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Incorrect Authorization vulnerability. A low-privileged attacker could leverage this vulnerability to bypass security measures an...

  • EPSS 0.25%
  • Veröffentlicht 14.10.2025 20:27:56
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts int...

  • EPSS 0.51%
  • Veröffentlicht 14.10.2025 20:27:54
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Incorrect Authorization vulnerability. An attacker could leverage this vulnerability to bypass security measures and gain unautho...

  • EPSS 0.56%
  • Veröffentlicht 14.10.2025 20:27:53
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a stored Cross-Site Scripting (XSS) Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to i...

Warnung Medienbericht Exploit
  • EPSS 94.53%
  • Veröffentlicht 09.09.2025 13:20:17
  • Zuletzt bearbeitet 12.05.2026 22:00:01

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Improper Input Validation vulnerability. A successful attacker can abuse this to achieve session takeover, increasing the confide...