Adobe patches actively exploited CVE-2026-75650 in Commerce and Magento, used to deploy Linux backdoors and PHP web shells.

Sansec says attackers exploit an unpatched Magento and Adobe Commerce flaw to run server code without authentication and install persistent backdoors.

Hackers are exploiting a zero-day vulnerability in Adobe Commerce and Magento e-commerce platforms to backdoor vulnerable online stores.