Critical Vulnerability in Adobe Commerce and Magento
Tuesday, 15 February, 2022 |
|
Adobe Commerce and Magento Open Source have both received security patches from Adobe. These updates fix a critical vulnerability identified as CVE-2022-24086. The successful exploitation could result in the execution of arbitrary code. According to Adobe, the flaw can be exploited without requiring authentication.
According to the vendor, the vulnerability has been exploited in the wild in a small number of attacks aimed against Adobe Commerce merchants.
Adobe Commerce 2.3.3 and lower are not affected.
