VendorsAdobecommerce_b2b1.3.5
Vulnerabilities

Adobe Commerce 1.3.5

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

95CVEs
CVE-2025-24427
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
6.5EPSS 0.006
CVE-2025-27207
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-06-10 · Analyzed
6.5EPSS 0.005
CVE-2025-54267
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-10-14 · Analyzed
6.5EPSS 0.004
CVE-2024-45123
Adobe Commerce | Cross-site Scripting (Reflected XSS) (CWE-79)
Published 2024-10-10 · Analyzed
6.1EPSS 0.005
CVE-2025-54265
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-10-14 · Analyzed
5.9EPSS 0.006
CVE-2025-49558
Adobe Commerce | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)
Published 2025-08-12 · Analyzed
5.9EPSS 0.004
CVE-2026-21294
Adobe Commerce | Server-Side Request Forgery (SSRF) (CWE-918)
Published 2026-03-11 · Analyzed
5.5EPSS 0.002
CVE-2026-21293
Adobe Commerce | Server-Side Request Forgery (SSRF) (CWE-918)
Published 2026-03-11 · Analyzed
5.5EPSS 0.002
CVE-2024-45128
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2024-10-10 · Modified
5.4EPSS 0.006
CVE-2024-45131
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2024-10-10 · Modified
5.4EPSS 0.005
CVE-2025-24437
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
5.4EPSS 0.004
CVE-2025-24428
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
5.4EPSS 0.004
CVE-2026-21292
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2026-03-11 · Analyzed
5.4EPSS 0.003
CVE-2025-49559
Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)
Published 2025-08-12 · Analyzed
5.3EPSS 0.007
CVE-2025-24425
Adobe Commerce | Business Logic Errors (CWE-840)
Published 2025-02-11 · Analyzed
5.3EPSS 0.006
CVE-2024-45124
Adobe Commerce | Improper Access Control (CWE-284)
Published 2024-10-10 · Analyzed
5.3EPSS 0.006
CVE-2025-27190
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-04-08 · Analyzed
5.3EPSS 0.005
CVE-2026-21282
Adobe Commerce | Improper Input Validation (CWE-20)
Published 2026-03-11 · Analyzed
5.3EPSS 0.005
CVE-2025-27191
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-04-08 · Analyzed
5.3EPSS 0.005
CVE-2025-27206
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-06-10 · Analyzed
5.3EPSS 0.005
CVE-2026-21310
Adobe Commerce | Improper Input Validation (CWE-20)
Published 2026-03-11 · Analyzed
5.3EPSS 0.003
CVE-2026-21286
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2026-03-11 · Analyzed
5.3EPSS 0.003
CVE-2024-45119
Adobe Commerce | Server-Side Request Forgery (SSRF) (CWE-918)
Published 2024-10-10 · Analyzed
4.9EPSS 0.009
CVE-2024-45127
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2024-10-10 · Analyzed
4.8EPSS 0.005
CVE-2025-54266
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-10-14 · Analyzed
4.8EPSS 0.003
CVE-2026-21291
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2026-03-11 · Analyzed
4.8EPSS 0.003
CVE-2026-21359
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2026-03-11 · Analyzed
4.7EPSS 0.002
CVE-2025-27189
Adobe Commerce | Cross-Site Request Forgery (CSRF) (CWE-352)
Published 2025-04-08 · Analyzed
4.3EPSS 0.010
CVE-2025-27188
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-04-08 · Analyzed
4.3EPSS 0.006
CVE-2025-24419
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.006
CVE-2025-24420
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.006
CVE-2024-45122
Adobe Commerce | Improper Access Control (CWE-284)
Published 2024-10-10 · Analyzed
4.3EPSS 0.006
CVE-2025-24421
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
CVE-2025-24436
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
CVE-2024-45125
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2024-10-10 · Analyzed
4.3EPSS 0.005
CVE-2024-45121
Adobe Commerce | Improper Access Control (CWE-284)
Published 2024-10-10 · Analyzed
4.3EPSS 0.005
CVE-2024-45129
Adobe Commerce | Improper Access Control (CWE-284)
Published 2024-10-10 · Analyzed
4.3EPSS 0.005
CVE-2024-45130
Adobe Commerce | Improper Access Control (CWE-284)
Published 2024-10-10 · Analyzed
4.3EPSS 0.005
CVE-2025-24435
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Modified
4.3EPSS 0.005
CVE-2025-24423
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
← Prev2 / 3Next →