Sansec blocked the first exploits of CVE-2026-71362, an unauthenticated account takeover in Adobe Commerce rated 9.1.
An unauthenticated PHP object injection flaw in Mirasvit Cache Warmer allows attackers to execute arbitrary code on any public Magento…