Commerce Platforms & DTC
Adobe Commerce

Adobe Commerce CVE-2026-71362 Comes Under Attack Shortly After Public Disclosure

Hackers began targeting a critical Adobe Commerce flaw that could let unauthenticated attackers hijack customer accounts and access private data. Hackers began targeting CVE-2026-71362 (CVSS score of 9. 1), a. . .
securityaffairs.co
August 13, 2026
5
@securityaffairs
Adobe Commerce CVE-2026-71362 Comes Under Attack Shortly After Public Disclosure
WHAT HAPPENED
Hackers began targeting a critical Adobe Commerce flaw that could let unauthenticated attackers hijack customer accounts and access private data. The vulnerability allows unauthenticated attackers to switch customer sessions, hijack accounts and access private data. Cybersecurity firm Sansec blocked the first exploitation attempts after Adobe published its advisory. The flaw affects Commerce, Commerce B2B and Magento Open Source versions through theJuly 2026 patches. The update fixes seven vulnerabilities, including an unauthenticated customer account takeover with a CVSS score of 9.
Continue reading from the original publisher for the complete report and source context.
READ ORIGINAL STORY