CVE-2026-34649
- EPSS 0.04%
- Veröffentlicht 12.05.2026 19:50:26
- Zuletzt bearbeitet 13.05.2026 14:49:11
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this v...
CVE-2026-34655
- EPSS 0.06%
- Veröffentlicht 12.05.2026 19:50:25
- Zuletzt bearbeitet 13.05.2026 14:49:11
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into...
CVE-2026-34654
- EPSS 0.07%
- Veröffentlicht 12.05.2026 19:50:24
- Zuletzt bearbeitet 13.05.2026 14:49:11
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in an application denial-of-service. An attacker cou...
CVE-2026-34651
- EPSS 0.04%
- Veröffentlicht 12.05.2026 19:50:23
- Zuletzt bearbeitet 13.05.2026 14:49:11
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this v...
CVE-2026-34646
- EPSS 0.09%
- Veröffentlicht 12.05.2026 19:50:22
- Zuletzt bearbeitet 13.05.2026 14:49:11
Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabilit...
CVE-2026-21293
- EPSS 0.06%
- Veröffentlicht 11.03.2026 02:19:24
- Zuletzt bearbeitet 11.03.2026 17:51:04
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A high-privileged attacker could ...
CVE-2026-21291
- EPSS 0.08%
- Veröffentlicht 11.03.2026 02:19:24
- Zuletzt bearbeitet 11.03.2026 18:21:44
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts int...
CVE-2026-21282
- EPSS 0.28%
- Veröffentlicht 11.03.2026 02:19:23
- Zuletzt bearbeitet 11.03.2026 18:22:04
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Improper Input Validation vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerab...
CVE-2026-21286
- EPSS 0.08%
- Veröffentlicht 11.03.2026 02:19:22
- Zuletzt bearbeitet 11.03.2026 18:21:53
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabili...
CVE-2026-21294
- EPSS 0.06%
- Veröffentlicht 11.03.2026 02:19:21
- Zuletzt bearbeitet 11.03.2026 18:03:36
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A high-privileged attacker could ...