VDB
CVE-2025-54236
CVE-2025-54236
PUBLISHED
KEV
Magento ist ein Online-Shop System von Adobe.
EPSS 96.74% · 99.9th percentile
Risk Scores
EPSS Score
96.74%
99.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Adobe Magento | |
| Adobe | Adobe Magento <Hotfix for CVE-2025-54236 |
Timeline
- Sep 8, 2025 PoC Published
- Sep 8, 2025 CVE Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 9, 2025 PoC Published
- Sep 10, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1999.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1999 advisory
- https://sansec.io/research/sessionreaper advisory
- https://securityonline.info/adobe-issues-emergency-patch-for-sessionreaper-cve-2025-54236-one-of-magentos-most-critical-flaws/ advisory
- https://helpx.adobe.com/security/products/magento/apsb25-88.html advisory
- https://sansec.io/research/sessionreaper-exploitation exploit