Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Adobe Issues Critical Security Updates for Over 170 Flaws

Adobe Issues Critical Security Updates for Over 170 Flaws

Posted on September 8, 2026 By CWS

Adobe has recently rolled out security patches to address more than 170 vulnerabilities in its software suite. Among these fixes, an urgent patch was provided for a critical zero-day vulnerability affecting Adobe Commerce and Magento Open Source. This flaw, identified as CVE-2026-75650, has a maximum CVSS score of 10 out of 10 and allows for remote code execution without requiring authentication.

Exploitation of the Zero-Day Vulnerability

The zero-day vulnerability, termed ‘StyleSmuggler’, came to light following warnings from cybersecurity firm Sansec. On September 4, threat actors began exploiting this flaw by injecting malicious code, triggered via Magento’s ‘Payment Transaction Failed Reminder’. This attack vector does not necessitate user involvement, making it particularly dangerous.

Sansec further disclosed that several groups have been exploiting this vulnerability to implant backdoors and web shells. As a protective measure, Adobe advises all users of Commerce/Magento to immediately apply the security patches and rotate encryption keys, along with any associated credentials such as admin passwords and API keys.

Additional Patches Released

In addition to the zero-day fix, Adobe released patches addressing eight more vulnerabilities in Commerce. These include critical privilege escalation flaws and other security bypass issues. Notably, another critical flaw, CVE-2026-82004, was patched in Campaign Classic, which posed a risk of arbitrary code execution.

The updates also cover critical vulnerabilities in ColdFusion, with two noteworthy issues receiving high priority ratings due to their potential for code execution exploits. Adobe recommends that all priority 1 updates be implemented within three days of release.

Comprehensive Software Updates

Beyond Commerce and ColdFusion, Adobe issued fixes for a wide range of its products. This includes 107 vulnerabilities in Experience Manager, 32 in Acrobat Reader, 8 in Photoshop, 3 in Illustrator, and 1 in Animate. These updates are essential to bolster security across Adobe’s software ecosystem.

Adobe has confirmed that, aside from the Commerce/Magento flaw, no other vulnerabilities addressed in this update cycle have been exploited in active attacks. Users can find further details on Adobe’s security advisories page.

These updates underscore the ongoing need for vigilance in cybersecurity practices, with Adobe’s swift response serving as a reminder of the critical importance of timely software updates.

Security Week News Tags:Acrobat Reader, Adobe, Campaign Classic, ColdFusion, Commerce, CVE, Cybersecurity, data protection, Experience Manager, Magento, RCE, security flaws, security patches, software updates, Vulnerabilities, zero-day

Post navigation

Previous Post: AI-Driven Cyberattacks Compromise Credentials Rapidly
Next Post: FortiGate Firewalls Targeted by Node.js Malware Exploit

Related Posts

Airport Cyberattack Disrupts More Flights Across Europe Airport Cyberattack Disrupts More Flights Across Europe Security Week News
Lloyds Data Breach Affects 450,000 Mobile Users Lloyds Data Breach Affects 450,000 Mobile Users Security Week News
From Ex Machina to Exfiltration: When AI Gets Too Curious From Ex Machina to Exfiltration: When AI Gets Too Curious Security Week News
North Korean Supply Chain Cyber Attacks on Open Source Developers North Korean Supply Chain Cyber Attacks on Open Source Developers Security Week News
Adobe ColdFusion Vulnerability Faces Active Exploitation Adobe ColdFusion Vulnerability Faces Active Exploitation Security Week News
CISA Warns of Two Exploited TeleMessage Vulnerabilities  CISA Warns of Two Exploited TeleMessage Vulnerabilities  Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Phishing Fuels 80% of US Cyber Attacks: SOC Detection Tips
  • Microsoft Addresses 974 Vulnerabilities, Including Two Zero-Days
  • FortiGate Firewalls Targeted by Node.js Malware Exploit
  • Adobe Issues Critical Security Updates for Over 170 Flaws
  • AI-Driven Cyberattacks Compromise Credentials Rapidly

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Phishing Fuels 80% of US Cyber Attacks: SOC Detection Tips
  • Microsoft Addresses 974 Vulnerabilities, Including Two Zero-Days
  • FortiGate Firewalls Targeted by Node.js Malware Exploit
  • Adobe Issues Critical Security Updates for Over 170 Flaws
  • AI-Driven Cyberattacks Compromise Credentials Rapidly

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark