#‘polyshell’


Magento stores heavily targeted: PolyShell exploits hit over half of vulnerable shops.

Mar 26, 2026 // 09:37

Attacks taking advantage of the ‘PolyShell’ security flaw in Magento Open Source and Adobe Commerce version 2 are active, impacting over half of susceptible online […]

Magento PolyShell: Unauth. Uploads & RCE Lead to Account Takeover (Security Flaw)

Mar 20, 2026 // 14:43

Sansec is alerting users to a serious security vulnerability in Magento’s REST API. This flaw could allow unauthorized individuals to upload harmful files, potentially leading […]

Magento stores vulnerable to remote code execution via ‘PolyShell’ bug, no login needed.

Mar 20, 2026 // 11:17

A newly discovered security flaw, called ‘PolyShell,’ impacts all stable versions of Magento Open Source and Adobe Commerce version 2. It allows unauthorized users to […]