Every CVE whose affected-product data names Adobe I/o Events, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (14)
CVE-2026-48356 — CVSS 9.3 (critical): Adobe Commerce is affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code…
CVE-2026-48358 — CVSS 9.1 (critical): Adobe Commerce is affected by an Improper Encoding or Escaping of Output vulnerability that could result in arbitrary code execution in the…
CVE-2026-47994 — CVSS 8.7 (high): Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject…
CVE-2026-47988 — CVSS 8.6 (high): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could…
CVE-2026-47984 — CVSS 8.2 (high): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could…
CVE-2026-47995 — CVSS 8.1 (high): Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to…
CVE-2026-47992 — CVSS 7.2 (high): Adobe Commerce is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that…
CVE-2026-47996 — CVSS 6.8 (medium): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. A high-privileged…
CVE-2026-48000 — CVSS 6.1 (medium): Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature bypass. An…
CVE-2026-47998 — CVSS 5.9 (medium): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could…
CVE-2026-47997 — CVSS 5.9 (medium): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could…
CVE-2026-48371 — CVSS 5.4 (medium): Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject…
CVE-2026-47999 — CVSS 4.8 (medium): Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to…
CVE-2026-48001 — CVSS 3.7 (low): Adobe Commerce is affected by an Information Exposure vulnerability that could lead to a limited disclosure of sensitive information…