VendorsAdobecommerce_b2b1.5.0
Vulnerabilities

Adobe Commerce 1.5.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

33CVEs
CVE-2025-24434
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
9.1EPSS 0.172
CVE-2025-24438
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Modified
8.7EPSS 0.008
CVE-2025-24410
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24412
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24413
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24414
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24415
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24416
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24417
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
8.7EPSS 0.007
CVE-2025-24409
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
8.2EPSS 0.007
CVE-2025-24418
Adobe Commerce | Improper Authorization (CWE-285)
Published 2025-02-11 · Analyzed
8.1EPSS 0.010
CVE-2025-24411
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
8.1EPSS 0.009
CVE-2025-24406
Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)
Published 2025-02-11 · Analyzed
7.5EPSS 0.014
CVE-2025-24407
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
7.1EPSS 0.008
CVE-2025-24408
Adobe Commerce | Information Exposure (CWE-200)
Published 2025-02-11 · Analyzed
6.5EPSS 0.010
CVE-2025-24426
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
6.5EPSS 0.008
CVE-2025-24422
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
6.5EPSS 0.008
CVE-2025-24424
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
6.5EPSS 0.008
CVE-2025-24427
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
6.5EPSS 0.006
CVE-2025-24437
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
5.4EPSS 0.004
CVE-2025-24428
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2025-02-11 · Analyzed
5.4EPSS 0.004
CVE-2025-24425
Adobe Commerce | Business Logic Errors (CWE-840)
Published 2025-02-11 · Analyzed
5.3EPSS 0.006
CVE-2025-27189
Adobe Commerce | Cross-Site Request Forgery (CSRF) (CWE-352)
Published 2025-04-08 · Analyzed
4.3EPSS 0.010
CVE-2025-27188
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-04-08 · Analyzed
4.3EPSS 0.006
CVE-2025-24420
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.006
CVE-2025-24419
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.006
CVE-2025-24421
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
CVE-2025-24436
Adobe Commerce | Incorrect Authorization (CWE-863)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
CVE-2025-24435
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Modified
4.3EPSS 0.005
CVE-2025-24423
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
4.3EPSS 0.005
CVE-2025-24430
Adobe Commerce | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)
Published 2025-02-11 · Analyzed
3.7EPSS 0.004
CVE-2025-24432
Adobe Commerce | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)
Published 2025-02-11 · Analyzed
3.7EPSS 0.004
CVE-2025-24429
Adobe Commerce | Improper Access Control (CWE-284)
Published 2025-02-11 · Analyzed
3.5EPSS 0.005