CRITICALVulnerability
CVE-2026-71362
Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain elevated access to sensitive resources. Exploitation of this issue does not require user interaction.
Properties
- severity
- CRITICAL
- score
- 9.1
- epss_score
- 0.25136
- cve_id
- CVE-2026-71362
- vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- published_at
- 2026-08-11T18:18:21.610
- last_modified
- 2026-08-28T00:18:09.390
- epss_percentile
- 0.97824
Related Entities (3)
ENRICHED_BY (1)
→[Source]FIRST EPSS
HAS_WEAKNESS (1)
→[Weakness]Incorrect Authorization
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph