Skip to content
CISA Known Exploited Vulnerability

CVE-2026-75650 — Magento Actively Exploited CVE

Adobe Commerce and Magento Open Source contain an improper neutralization of special elements used in a template engine vulnerability that could allow an attacker to execute arbitrary code.

⚠ Actively exploited (CISA KEV) Magento 2026
CISA catalog entry
Product
Commerce and Magento
Vendor
Adobe
Added to KEV
2026-09-08
Remediation due
2026-09-11

CVE-2026-75650 is tracked in the CISA Known Exploited Vulnerabilities catalog. WebPulse monitors it as part of its framework security intelligence.

View CVE-2026-75650 on the NIST National Vulnerability Database →