← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 25, 2026 · 04:46via The Hacker News

WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV

Brief

The U. S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added two critical security flaws impacting WSO2 and Adobe Commerce and Magento to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.

The vulnerabilities are listed below -

CVE-2026-5430 (CVS score: 9.8) - A path traversal vulnerability in WSO2 API Control Plane,

Read more on The Hacker News→