Incorrect Authorization Vulnerability in Adobe Commerce
CVE-2026-48415
7.6HIGH
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 11 August 2026
What is CVE-2026-48415?
Adobe Commerce has a vulnerability that allows a low-privileged attacker to bypass security mechanisms, potentially gaining unauthorized read and write access to sensitive information. This issue can disrupt service availability without the need for user interaction, making it a significant risk for users and organizations relying on the platform for e-commerce operations.
Affected Version(s)
Adobe Commerce 0 <= 2.4.9-2026-jul, 2.4.8-2026-aug, 2.4.7-2026-aug, 2.4.6-2026-aug, 2.4.5-2026-aug, 2.4.4-2026-aug
Adobe Commerce 0 <= 2.4.9-2026-jul, 2.4.8-2026-aug, 2.4.7-2026-aug, 2.4.6-2026-aug, 2.4.5-2026-aug, 2.4.4-2026-aug
Adobe Commerce B2B 0 <= 1.5.3-2026-jul, 1.5.2-2026-jul, 1.4.2-2026-jul, 1.3.4-2026-jul, 1.3.3-2026-jul