A new security vulnerability in Magento and Adobe Commerce was publicly disclosed on March 17, 2026. Named PolyShell, it allows attackers to upload executable files to any store through the REST API — without needing an account or login. No production patch exists yet, and the exploit method is already circulating.
Monthly Archives: March 2026
Top 7 Free Magento 2 Order Tracking Extensions to Improve Post-Purchase Experience
As ecommerce continues to grow, more people have turned to online stores for their needs. One way that online retailers can increase engagement and gain repeat buyers is to provide excellent after-sales services.
