August 16, 2026
- Adobe Commerce / Magento CVE-2026-71362 now has a reproducible lab — a Docker environment reproducing the customer-session identity-switch account-takeover flaw (APSB26-92, CVSS 9.1) was published, lowering the bar to study a bug already seen exploited within hours of disclosure (earlier coverage). @Dinosn · Vulnerabilities & Exploits
in Bring Your Own EDR: Turning a Commercial Endpoint Agent Into a Trojan Horse