SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025-54236)

October 22nd: mass SessionReaper attacks have startedIn August 2025, a critical (CVSS 9.1) flaw was discovered in all versions of Adobe Commerce and Magento. The bug, named “SessionReaper&q…


Read Full Article on Sansec.io →