Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2025-24417

Adobe Commerce versions 2.4.8-beta1, 2.4.7-p3, 2.4.6-p8, 2.4.5-p10, 2.4.4-p11 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. A successful attacker can abuse this to achieve session takeover, increasing the confidentiality and integrity impact as high.

CVSS v3:

  • Severity: Unknown
  • Score:
  • AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N
Software From Fixed in
magento / community-edition 2.4.7-beta1 2.4.7-p4
magento / community-edition 2.4.6-p1 2.4.6-p9
magento / community-edition 2.4.5-p1 2.4.5-p11
magento / community-edition - 2.4.4-p12
magento / community-edition 2.4.7 2.4.7.x
magento / community-edition 2.4.6 2.4.6.x
magento / community-edition 2.4.5 2.4.5.x
magento / community-edition 2.4.4 2.4.4.x
magento / community-edition 2.4.8-beta1 2.4.8-beta1.x
magento / project-community-edition - 2.0.2.x
adobe / commerce 2.4.4 2.4.4.x
adobe / commerce 2.4.5 2.4.5.x
adobe / commerce 2.4.4-p1 2.4.4-p1.x
adobe / commerce - 2.4.4
adobe / commerce 2.4.5-p1 2.4.5-p1.x
adobe / commerce 2.4.4-p2 2.4.4-p2.x
adobe / commerce 2.4.5-p2 2.4.5-p2.x
adobe / commerce 2.4.4-p3 2.4.4-p3.x
adobe / commerce 2.4.4-p4 2.4.4-p4.x
adobe / commerce 2.4.4-p5 2.4.4-p5.x
adobe / commerce 2.4.4-p6 2.4.4-p6.x
adobe / commerce 2.4.5-p3 2.4.5-p3.x
adobe / commerce 2.4.5-p4 2.4.5-p4.x
adobe / commerce 2.4.5-p5 2.4.5-p5.x
adobe / commerce 2.4.6 2.4.6.x
adobe / commerce 2.4.6-p1 2.4.6-p1.x
adobe / commerce 2.4.6-p2 2.4.6-p2.x
adobe / commerce 2.4.6-p3 2.4.6-p3.x
adobe / commerce 2.4.4-p7 2.4.4-p7.x
adobe / commerce 2.4.4-p10 2.4.4-p10.x
adobe / commerce 2.4.4-p11 2.4.4-p11.x
adobe / commerce 2.4.4-p8 2.4.4-p8.x
adobe / commerce 2.4.4-p9 2.4.4-p9.x
adobe / commerce 2.4.5-p10 2.4.5-p10.x
adobe / commerce 2.4.5-p6 2.4.5-p6.x
adobe / commerce 2.4.5-p7 2.4.5-p7.x
adobe / commerce 2.4.5-p8 2.4.5-p8.x
adobe / commerce 2.4.5-p9 2.4.5-p9.x
adobe / commerce 2.4.6-p4 2.4.6-p4.x
adobe / commerce 2.4.6-p5 2.4.6-p5.x
adobe / commerce 2.4.6-p6 2.4.6-p6.x
adobe / commerce 2.4.6-p7 2.4.6-p7.x
adobe / commerce 2.4.6-p8 2.4.6-p8.x
adobe / commerce 2.4.7 2.4.7.x
adobe / commerce 2.4.7-p1 2.4.7-p1.x
adobe / commerce 2.4.7-p2 2.4.7-p2.x
adobe / commerce 2.4.7-p3 2.4.7-p3.x
adobe / commerce 2.4.8-beta1 2.4.8-beta1.x
adobe / commerce_b2b 1.4.2-p1 1.4.2-p1.x
adobe / commerce_b2b 1.4.2-p2 1.4.2-p2.x
adobe / commerce_b2b 1.4.2 1.4.2.x
adobe / commerce_b2b 1.3.5-p7 1.3.5-p7.x
adobe / commerce_b2b 1.3.4-p9 1.3.4-p9.x
adobe / commerce_b2b 1.3.4 1.3.4.x
adobe / commerce_b2b 1.3.3 1.3.3.x
adobe / commerce_b2b 1.3.3-p10 1.3.3-p10.x
adobe / commerce_b2b 1.3.3-p11 1.3.3-p11.x
adobe / commerce_b2b 1.3.4-p10 1.3.4-p10.x
adobe / commerce_b2b 1.3.5 1.3.5.x
adobe / commerce_b2b 1.3.5-p8 1.3.5-p8.x
adobe / commerce_b2b 1.4.2-p3 1.4.2-p3.x
adobe / commerce_b2b 1.5.0 1.5.0.x
adobe / commerce_b2b - 1.3.3
adobe / magento 2.4.4 2.4.4.x
adobe / magento 2.4.4-p1 2.4.4-p1.x
adobe / magento 2.4.4-p2 2.4.4-p2.x
adobe / magento 2.4.4-p3 2.4.4-p3.x
adobe / magento 2.4.5 2.4.5.x
adobe / magento 2.4.5-p1 2.4.5-p1.x
adobe / magento 2.4.4-p7 2.4.4-p7.x
adobe / magento 2.4.5-p2 2.4.5-p2.x
adobe / magento 2.4.5-p3 2.4.5-p3.x
adobe / magento 2.4.5-p4 2.4.5-p4.x
adobe / magento 2.4.5-p5 2.4.5-p5.x
adobe / magento 2.4.5-p6 2.4.5-p6.x
adobe / magento 2.4.5-p7 2.4.5-p7.x
adobe / magento 2.4.6 2.4.6.x
adobe / magento 2.4.6-p1 2.4.6-p1.x
adobe / magento 2.4.6-p2 2.4.6-p2.x
adobe / magento 2.4.6-p4 2.4.6-p4.x
adobe / magento 2.4.6-p5 2.4.6-p5.x
adobe / magento 2.4.4-p10 2.4.4-p10.x
adobe / magento 2.4.4-p11 2.4.4-p11.x
adobe / magento 2.4.4-p4 2.4.4-p4.x
adobe / magento 2.4.4-p5 2.4.4-p5.x
adobe / magento 2.4.4-p6 2.4.4-p6.x
adobe / magento 2.4.4-p8 2.4.4-p8.x
adobe / magento 2.4.4-p9 2.4.4-p9.x
adobe / magento 2.4.5-p10 2.4.5-p10.x
adobe / magento 2.4.5-p8 2.4.5-p8.x
adobe / magento 2.4.5-p9 2.4.5-p9.x
adobe / magento 2.4.6-p3 2.4.6-p3.x
adobe / magento 2.4.6-p6 2.4.6-p6.x
adobe / magento 2.4.6-p7 2.4.6-p7.x
adobe / magento 2.4.6-p8 2.4.6-p8.x
adobe / magento 2.4.7 2.4.7.x
adobe / magento 2.4.7-p1 2.4.7-p1.x
adobe / magento 2.4.7-p2 2.4.7-p2.x
adobe / magento 2.4.7-p3 2.4.7-p3.x
adobe / magento 2.4.8-beta1 2.4.8-beta1.x
adobe / magento - 2.4.4