CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

NCSC-2026-0344 [1.00] [H/H] Kwetsbaarheid verholpen in Adobe Commerce en Magento

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6702

As cited

Copy frozen at (site build).

vulnerabilities

NCSC-2026-0344 [1.00] [H/H] Kwetsbaarheid verholpen in Adobe Commerce en Magento

Adobe has patched a vulnerability in the template engine of Adobe Commerce and Magento where special elements are not properly sanitized. An attacker can exploit this to execute arbitrary code remotely without user interaction by manipulating scope to escalate privileges or modify the execution context. Adobe reports the vulnerability is under active exploitation.

Why it matters: Organizations running Adobe Commerce or Magento instances are at immediate risk of remote code execution; patching should be prioritized given active exploitation in the wild.

VendorsAdobe
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary