CyberHighSingle-sourceAccelerating
7.0
Adobe Commerce Zero-Day 'StyleSmuggler' Exploited to Backdoor Online Stores
SecurityWeek·2 days ago
A threat actor group named Nightmare Eclipse has published proof-of-concept exploits for zero-day vulnerabilities in CrowdStrike, Nvidia, and Avast products, enabling privilege escalation to System-level access. The release of these PoCs increases the risk of weaponization and targeted attacks, though the specific vulnerabilities and affected versions remain undisclosed. This development signals a coordinated disclosure of high-impact flaws across major security and technology vendors, warranting immediate attention from enterprise defenders.