Attackers Actively Exploiting Unpatched Zero-Day in Magento and Adobe Commerce
A new, unpatched vulnerability dubbed "StyleSmuggler" in Magento Open Source and Adobe Commerce is being actively exploited by attackers to execute malicious code on online store servers without authentication. The Dutch e-commerce security company Sansec, which discovered the flaw, published an advisory on September 5, noting that attacks began on September 4. All current versions, including 2.4.9, are affected, and Adobe has yet to release an advisory or patch.
Want more?
Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.
Open NewsSnap.ai