newstrooper newstrooper
  • Home
  • World News
  • Politics
  • Sports
  • Entertainment
  • Business
  • Technology
  • Travel
  • Gaming
Reading: Adobe releases patches, fixes 254 vulnerabilities, closes high-strength security gaps
Share

News Trooper

Your Global Insight, Delivered Daily.

Search
  • Home
  • World News
  • Politics
  • Sports
  • Entertainment
  • Business
  • Technology
  • Travel
  • Gaming
Follow US
© 2025 All Rights Reserved | Powered by News Trooper News
News Trooper > Technology > Adobe releases patches, fixes 254 vulnerabilities, closes high-strength security gaps
Technology

Adobe releases patches, fixes 254 vulnerabilities, closes high-strength security gaps

June 10, 2025 2 Min Read
Share
Adobe releases patches, fixes 254 vulnerabilities, closes high-strength security gaps
SHARE

Adobe pushed security updates on Tuesday to address a total of 254 security flaws affecting software products.

Of the 254 defects, 225 are resident of AEM and affect all versions, including AEM Cloud Services (CS) and 6.5.22. This issue was resolved in AEM Cloud Services release 2025.5 and version 6.5.23.

“The success of exploitation of these vulnerabilities can lead to arbitrary code execution, privilege escalation, and security feature bypass,” Adobe said in its advisory.

Almost all 225 vulnerabilities are classified as cross-site scripting (XSS) vulnerabilities, particularly as mixtures of stored and DOM-based XSS, which can be exploited to achieve arbitrary code execution.

Adobe praised security researchers Jim Green (Green-Jam), Akshay Sharma (Anonymous_blackzero), and LPI for discovering and reporting defects in the XSS.

The most serious flaws the company patched as part of this month’s update is about open source code execution flaws in Adobe Commerce and Magento.

CVE-2025-47110 (CVSS score: 9.1) is a vulnerability in XSS that can result in arbitrary code execution. Inappropriate approval flaws (CVE-2025-43585, CVSS score: 8.2) that could lead to security feature bypassing are also addressed.

The following versions are affected –

  • Adobe Commerce (2.4.8, 2.4.7-P5 and earlier, 2.4.6-P10 and earlier, 2.4.5-P12 and earlier, 2.4.4-P13 and earlier)
  • Adobe Commerce B2B (1.5.2 or earlier, 1.4.2-P5 or earlier, 1.3.5-P10 or earlier, 1.3.4-P12 or earlier, 1.3.3-P13 or earlier)
  • Magento Open Source (2.4.8, 2.4.7-P5 and earlier, 2.4.6-P10 and earlier, 2.4.5-P12 and earlier)

Of the remaining updates, four are related to code execution flaws in Adobe Incpy (CVE-2025-30327, CVE-2025-47107, CVSS score: 7.8) and Sustance 3D sampler (CVE-2025-43581, CVE-2025-43588, CVS SCORES: 7.8).

See also  "Secure" images are not difficult to steal with AI.

None of the bugs are listed as being exposed or exploited in the wild, but users are advised to update their instances to the latest version to prevent potential threats.

Share This Article
Facebook Twitter Copy Link
Previous Article Steelers’ TJ Watt and Bengals’ Tray Hendrickson will not report to their respective forced mini-camps Steelers’ TJ Watt and Bengals’ Tray Hendrickson will not report to their respective forced mini-camps
Next Article AI and national security: a new battlefield AI and national security: a new battlefield
Leave a comment Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News

Musk’s decision to limit political spending leaves some Republicans cold

Musk’s decision to limit political spending leaves some Republicans cold

Elon Musk's pledge to retreat from campaign spending -- if…

June 2, 2025
GOP Rep. Bill Huizenga is preparing to run for Michigan's open Senate seat

GOP Rep. Bill Huizenga is preparing to run for Michigan's open Senate seat

McKinnack Island, Mich. -- Republican Rep. Bill Huizenga is preparing…

June 2, 2025
'It betrays our values': Progressives grapple with deadly shooting

'It betrays our values': Progressives grapple with deadly shooting

Progressive is tackling that two people who worked at the…

June 2, 2025
Beshear, Khanna to headline Dem mayor summit in July

Beshear, Khanna to headline Dem mayor summit in July

Two potential 2028 presidential primary candidates will descend on Cleveland…

June 2, 2025
Democrats are ‘stuck in that unfortunate reality’ in debate over Biden's illness

Democrats are ‘stuck in that unfortunate reality’ in debate over Biden's illness

24 hours after Sunday's announcement that former President Joe Biden…

June 2, 2025

You Might Also Like

Google publishes vishing group UNC6040 targeting salesforce with fake data loader app
Technology

Google publishes vishing group UNC6040 targeting salesforce with fake data loader app

5 Min Read
Android Trojan Crocodilus is currently active in eight countries and targets banks and crypto wallets
Technology

Android Trojan Crocodilus is currently active in eight countries and targets banks and crypto wallets

4 Min Read
Former Black Busta members use Microsoft team and Python scripts in the 2025 attack
Technology

Former Black Busta members use Microsoft team and Python scripts in the 2025 attack

7 Min Read
“Secure” images are not difficult to steal with AI.
Technology

“Secure” images are not difficult to steal with AI.

17 Min Read
newstrooper
newstrooper

Welcome to News Trooper, your reliable destination for global news that matters. In an age of information overload, we stand as a dedicated news platform committed to delivering timely, accurate, and insightful coverage of the world’s most significant events and trends.

  • Business
  • Entertainment
  • Gaming
  • Politics
  • Sports
  • Technology
  • Travel
  • World News
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service
  • Home
  • World News
  • Politics
  • Sports
  • Entertainment
  • Business
  • Technology
  • Travel
  • Gaming
  • About us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Service

© 2025 All Rights Reserved | Powered by News Trooper News

Welcome Back!

Sign in to your account

Lost your password?