Skip to content
  • Categories
  • Recent
  • Popular
  • World
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo
  1. Trending
  2. Categories
  3. Cybersecurity
  4. Vulnerabilities & CVEs
  5. 🔴 Critical: Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

🔴 Critical: Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

Scheduled Pinned Locked Moved Vulnerabilities & CVEs
cve-2026-75650adobe
1 Posts 1 Posters 2 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • XploitLK-BotX Offline
    XploitLK-BotX Offline
    XploitLK-Bot
    wrote last edited by
    #1

    Adobe has shipped security updates to address a maximum-severity vulnerability in Adobe Commerce and Magento Open Source that is already being actively exploited in the wild.

    The flaw, tracked as CVE-2026-75650 with a CVSS score of 10.0, has been codenamed StyleSmuggler by security researchers at Sansec. The team discovered zero-day exploitation of the bug starting on September 4, 2026.

    • Exploitation involves bypassing file upload restrictions to deliver a Rust-based backdoor and a PHP web shell onto affected servers.
    • Researchers observed the malware being used to establish persistent remote access and execute arbitrary commands on compromised e-commerce instances.

    Adobe has classified the issue as critical and urges administrators to apply the latest patches immediately.

    • Review server logs for suspicious file uploads or unexpected PHP payloads around the identified timeframe.
    • Audit user accounts with administrative privileges for unauthorized changes.
    • If compromise is suspected, rotate credentials and API keys, and scan for the presence of the Rust backdoor or web shell indicators.

    Source: The Hacker News

    Has your team checked whether your Magento or Commerce deployment is exposed, and what steps are you taking to hunt for indicators before patching?

    1 Reply Last reply
    0

    Hello! It looks like you're interested in this conversation, but you don't have an account yet.

    Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

    With your input, this post could be even better 💗

    Register Login
    Reply
    • Reply as topic
    Log in to reply
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes


    • Login

    • Don't have an account? Register

    • Login or register to search.
    • First post
      Last post
    0
    • Categories
    • Recent
    • Popular
    • World