Adobe have released a security advisory on the 15th of March 2023 in line with their regular monthly patch schedule which includes a number of updates to address 7 medium risk vulnerabilities and 1 high risk vulnerability.
These updates address vulnerabilities which may impact services through Cross-Site Scripting, Elevation of Privilege, Information Disclosure, Remote Code Execution, Denial of Service and Security Restriction Bypass.
For more information please see: Adobe Security Update
This release consists of security updates for the following products:
- Adobe Commerce 2.4.4-p2 and earlier versions
- Adobe Commerce 2.4.5-p1 and earlier versions
- Magento Open Source 2.4.4-p2 and earlier versions
- Magento Open Source 2.4.5-p1 and earlier versions
- Adobe Experience Manager (AEM) AEM Cloud Service (CS)
- Adobe Experience Manager (AEM) 6.5.15.0 and earlier versions
- Illustrator 2023 27.2.0 and earlier versions
- Adobe Dimension 3.4.7 and earlier versions
- Creative Cloud Desktop Application 5.9.1 and earlier versions
- Adobe Substance 3D Stager 2.0.0 and earlier versions
- Photoshop 2022 23.5.3 and earlier versions
- Photoshop 2023 24.1.1 and earlier versions
- ColdFusion 2018 Update 15 and earlier versions
- ColdFusion 2021 Update 5 and earlier versions
Matsco recommends any affected systems are updated as soon as convenient.