197 exploited vulnerabilities in Commerce
- Vendors
- Adobe
- With known exploits
- 197
- Affected Adobe Commerce versions
- = 2.4.2, 2.4.3, 2.4.4, 2.4.5, 2.4.6, 2.4.7, 2.3.0, 2.3.6, 2.3.7, 2.4.8, 2.4.9
- Affected Adobe Commerce Webhooks versions
- < 1.5.0
- Affected Adobe Magento versions
- = 2.4.4, 2.4.5, 2.4.6, 2.4.7, 2.3.0, 2.3.6, 2.4.2, 2.3.7, 2.4.3
- Affected Magento versions
- < 2.3.7, 2.4.3, 2.4.4
Vulnerabilities with exploits
Highest CVSS first β 2 of these already have exploit code on Sploitus
CVE-2026-48358
CVE-2026-48356
CVE-2024-45115
CVE-2024-34102 25 exploits
Exploit for Improper Restriction of XML External Entity Reference in Adobe CommerceExploit for Improper Restriction of XML External Entity Reference in Adobe Commerce
CVE-2023-38218
CVE-2022-35698
CVE-2022-24086 5 exploits
Exploit for Improper Input Validation in Adobe CommerceExploit for Improper Input Validation in Adobe Commerce
CVE-2025-24434
CVE-2024-34103
CVE-2026-47988
CVE-2026-47984
CVE-2025-47110
CVE-2025-24409
CVE-2024-34108
CVE-2024-20719
CVE-2024-20720
CVE-2023-38208
CVE-2023-29297
CVE-2022-24093
CVE-2022-34253
CVE-2026-47992
CVE-2025-24411
CVE-2024-45148
CVE-2024-39397
CVE-2024-39401
CVE-2024-39402
CVE-2024-34109
CVE-2024-34110
CVE-2024-20758
CVE-2022-42344
CVE-2022-34254
CVE-2025-24437
CVE-2025-24436
CVE-2022-34255
CVE-2026-47994
CVE-2026-34686
CVE-2026-34653
CVE-2026-21290
CVE-2025-49557
CVE-2025-24438
CVE-2025-24417
CVE-2025-24416
CVE-2025-24415
CVE-2025-24414
CVE-2025-24413
CVE-2025-24412
CVE-2025-24410
CVE-2024-34104
CVE-2023-38219
CVE-2026-47995