Adobe on Thursday updated its advisory for an actively exploited zero-day affecting Adobe Commerce and Magento Open Source to patch a newly discovered flaw. The issue is rated 9.8 on the CVSS vulnerability scoring system and relates to an “Improper Input Validation” bug that could result in the execution of malicious code. The update arrives as cybersecurity firm Positive Technologies disclosed it was able to successfully create an exploit for CVE-2022-24086 to gain remote code execution from an unauthenticated user.”]
Source: https://thehackernews.com/2022/02/another-critical-rce-discovered-in.html

