CVE-2026-47988: Adobe Commerce | Incorrect Authorization (CWE-863)
Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read and limited write access, causing a limited disruption to availability. Exploitation of this issue does not require user interaction.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47988?
CVE-2026-47988 has a severity rating of 9.1, classified as critical.
How do I fix CVE-2026-47988?
To mitigate CVE-2026-47988, update Adobe Commerce to the latest version that addresses this vulnerability.
What are the potential impacts of CVE-2026-47988?
Exploitation of CVE-2026-47988 could allow an attacker to bypass security measures and gain unauthorized read and write access.
Does CVE-2026-47988 require user interaction to exploit?
No, exploiting CVE-2026-47988 does not require any user interaction.
Which software is affected by CVE-2026-47988?
CVE-2026-47988 affects Adobe Commerce, Adobe Commerce B2B, Adobe Magento, and Adobe I/O Events Commerce.