Security Advisory

CVE-2026-48000

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-14 19:44:15
Last updated 2026-07-16 14:46:10
Assigner adobe
CVSS score 4.3
State PUBLISHED

Description

Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature bypass. An attacker could construct a malicious URL that redirects a victim to an attacker-controlled site, potentially enabling credential theft and account takeover. Exploitation of this issue requires user interaction in that a victim must click on a malicious link.