Subscribe
MEDIUM

CVE-2026-48000

CVSS 4.3 Disclosed

Severity: MEDIUM (CVSS 4.3)

Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature bypass. An attacker could construct a malicious URL that redirects a victim to an attacker-controlled site, potentially enabling credential theft and account takeover. Exploitation of this issue requires user interaction in that a victim must click on a malicious link.

Published: 2026-07-14
Last Modified: 2026-07-15

References:


View Full CVE Details on NIST NVD โ†’