Open Redirect Vulnerability in Adobe Commerce Products
CVE-2026-21295
3.1LOW
What is CVE-2026-21295?
Adobe Commerce is affected by a security flaw that allows attackers to redirect users to harmful external sites. This vulnerability, identified as an 'Open Redirect,' can be exploited when users unintentionally click on malicious links. It’s crucial for users to ensure they are on trusted websites to avoid falling victim to this risk, which requires user interaction for exploitation. Updating to the latest versions and monitoring your security settings is strongly recommended.
Affected Version(s)
Adobe Commerce 0 <= 2.4.4-p16