Cybersecurity · September 6, 2026
Dutch e-commerce security firm Sansec has disclosed an unpatched bug in Magento Open Source and Adobe Commerce, warning that attackers can already use it to plant backdoors on online stores without any valid login. Sansec calls the flaw StyleSmuggler and says active exploitation began on September 4, well before any official patch exists. Store operators are being urged to apply the vendor's interim mitigation steps in the meantime.
// source: thehackernews.com ↗