adobecommerce (1)

13717448076?profile=RESIZE_400xAdobe has warned of a critical security flaw in its Commerce and Magento Open Source platforms that, if successfully exploited, could allow attackers to take control of customer accounts.  The vulnerability, tracked as CVE-2025-54236 (aka SessionReaper), carries a CVSS score of 9.1 out of a maximum of 10.0.  It has been described as an improper input validation flaw.  Adobe said it's not aware of any exploits in the wild.   "A potential attacker could take over customer accounts in Adobe Commerc