Over 250 Magento Stores Compromised Overnight by New Adobe Commerce Vulnerability

Published:

spot_img

Oct 23, 2025Ravie LakshmananData Breach / Vulnerability

## New Vulnerability in Adobe Commerce: Understanding CVE-2025-54236

A serious security flaw has been identified in Adobe Commerce, known as CVE-2025-54236. This vulnerability, classified with a CVSS score of 9.1, involves improper input validation and poses a threat to customer accounts via the Commerce REST API. Discovered by a security researcher named Blaklis, this flaw, often referred to as SessionReaper, was addressed by Adobe last month.

## The Ongoing Threat to Magento Stores

Despite the patch being issued, alarming statistics show that over 62% of Magento stores are still at risk, more than six weeks post-disclosure. Adobe has urged website administrators to implement fixes promptly to avert further exploitation of this vulnerability. As attacks have already been detected, the urgency of applying these patches cannot be overstated.

### Attack Patterns Exploiting the Vulnerability

Cyber actors are leveraging this flaw through specific IP addresses to deploy PHP web shells or extract critical information from server configurations. The following IPs have been noted as indicators of these malicious activities:

– 34.227.25[.]4
– 44.212.43[.]34
– 54.205.171[.]35
– 155.117.84[.]134
– 159.89.12[.]166

According to security firm Sansec, attackers are utilizing PHP backdoors through the endpoint ‘/customer/address_file/upload’, masquerading as legitimate sessions.

## Technical Insights into CVE-2025-54236

Searchlight Cyber has released an extensive analysis of CVE-2025-54236, characterizing it as a nested deserialization vulnerability that allows for remote code execution. This level of access can have devastating implications for affected sites, making it crucial for users to take action before malicious actors exploit the flaw further.

### Historical Context of Vulnerabilities in Adobe Commerce

Notably, CVE-2025-54236 is not the first deserialization vulnerability impacting Adobe’s platforms. In July 2024, another severe flaw, dubbed CosmicSting (CVE-2024-34102, CVSS score: 9.8), came to light, leading to widespread exploitation. This trend raises concerns about the ongoing security challenges faced by Adobe Commerce and Magento platforms.

## The Importance of Timely Patch Application

With proof-of-concept (PoC) exploits and additional technical information now widely available, it is increasingly important for users to implement necessary patches without delay. Cybersecurity threats continue to evolve, and inaction can result in significant repercussions for businesses relying on these platforms.

As the security landscape shifts, vigilance and proactive measures will be key for website administrators to safeguard their systems and customer data against emerging threats. The stakes are high, and staying informed about potential vulnerabilities can make all the difference.

spot_img

Related articles

Recent articles

Chhattisgarh Inquiry Launched into Sexual Harassment Claims Against IG Ratanlal Dangi: “No One Will Be Spared,” Says CM Vishnudev Sai

Raipur: An Investigation into Allegations Against IG Ratanlal Dangi Raipur has recently found itself at the center of a serious controversy involving Inspector General (IG)...

U.S. Charges Ex-Security Official with Selling Trade Secrets to Russia

The U.S. government has filed charges against a former cybersecurity executive for allegedly stealing trade secrets aimed at being sold to a buyer in...

Namibia’s 2026 International Energy Conference: Paving the Way for Oil and Investment Opportunities

Namibia to Host Its 8th International Energy Conference in 2026 RichAfrica Consultancy is excited to announce the return of...

DMCC Sees 16% Surge in Chinese Businesses Amid Strengthening Dubai-China Trade Relations

Dubai's DMCC Sees Surge in Chinese Business Participation Significant Growth in Chinese Enterprises The Dubai Multi Commodities Centre (DMCC) has reported an impressive growth rate of...