CVE-2025-54236 is actively exploited to hijack accounts via Magento’s REST API Over 250 attacks in 24 hours; most stores remain unpatched six weeks after fix Attackers upload PHP backdoors using fake ...
Threat researchers from the Sansec Forensics Team have warned about a critical vulnerability in Adobe Commerce and Magento, an open-source e-commerce platform owned by Adobe. In a report published on ...