Adobe patches ‘most severe’ flaw in Magento eCommerce platform




  • Adobe patched a critical Web API flaw in Commerce and Magento
  • The bug, dubbed SessionReaper, scored 9.1/10 and affects multiple versions
  • Researchers warn the leaked hotfix may aid attackers

Adobe has patched a critical vulnerability in its Commerce and Magento Open Source platforms that could lead to full account takeover.

In a recently published security advisory, Adobe said it fixed an Improper Input Validation (CWE-20) vulnerability affecting the ServiceInputProcessor component of the Web API.

https://cdn.mos.cms.futurecdn.net/jt92kXfBXVXUWwnKBmDJLn.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img