← לוח פגיעויות

CVE-2026-21295

נמוכה 3.1

תיאור (מקור, אנגלית)

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue requires user interaction.

מדדים

CVSS 3.1
3.1 (LOW) מקור הציון: CNA CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-23/9/2026
CWE
CWE-601

מוצרים מושפעים

adobe: commerce; adobe: commerce b2b; adobe: magento

קישורים