A critical vulnerability in Adobe's Commerce and Magento e-commerce platforms, identified as CVE-2026-71362, is being exploited by hackers to hijack customer accounts. This flaw allows attackers to gain unauthorized access, potentially leading to sensitive data breaches and financial losses. The vulnerability is considered high-risk, and its exploitation can have severe consequences for affected businesses and their customers. According to recent reports1, attackers are actively targeting this vulnerability, highlighting the need for immediate attention and patching. The exploitation of CVE-2026-71362 expands the active attack surface, making it essential for organizations to prioritize their security measures based on exposure and exploitation evidence. This vulnerability poses a significant threat to e-commerce businesses, and its exploitation can result in substantial financial and reputational damage, so it is crucial for practitioners to take prompt action to secure their systems and protect customer accounts.
Hackers exploit critical Adobe Commerce flaw to hijack customer accounts
⚠️ Critical Alert
Why This Matters
CVE-2026-71362 disclosure expands the active attack surface — prioritize based on your exposure and exploitation evidence.
References
- BleepingComputer. (2026, August 12). Hackers exploit critical Adobe Commerce flaw to hijack customer accounts. *BleepingComputer*. https://www.bleepingcomputer.com/news/security/hackers-exploit-critical-adobe-commerce-flaw-to-hijack-customer-accounts/
Original Source
BleepingComputer
Read original →