
magento magento/project-community-edition Vulnerabilities
CVE security advisories and vulnerability history for magento/project-community-edition by magento.

CVE security advisories and vulnerability history for magento/project-community-edition by magento.
Last updated
magento magento/project-community-edition has 161 published CVE records since 2017, of which 1 are in CISA's Known Exploited Vulnerabilities catalog and 1 have a known public exploit. The average CVSS base score across scored CVEs is 6.7.
This page aggregates every publicly disclosed vulnerability (CVE) affecting magento magento/project-community-edition, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
How the CVSS severity of magento magento/project-community-edition's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
1
One of magento magento/project-community-edition's CVEs is confirmed exploited in the wild.
Public exploits
1
One of magento magento/project-community-edition's CVEs has a known public exploit available.
Browse every magento magento/project-community-edition version named in a CVE, then pick one to see only the CVEs that affect it.
161 CVEs
Added to CISA KEV 2025-10-24
Showing 30 of 161
The CWE weakness categories most often found in magento magento/project-community-edition CVEs. Follow any weakness for its full explanation.
How many magento magento/project-community-edition CVEs were published each year.
Browse vulnerabilities for other products by magento.
Common questions about magento magento/project-community-edition vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new magento magento/project-community-edition vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.