CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog

Read full story on The Hacker News
Share
CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog
AI disclosure

Summary

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw impacting Mirasvit Cache Warmer, a popular Magento full-page cache extension, to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild. The vulnerability, tracked as CVE-2026-45247 (CVSS score: 9.8), is a case of deserialization of untrusted

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.