ET WEB_SPECIFIC_APPS Adobe Commerce & Magento REST API SessionReaper Execution (CVE-2025-54236)
Query · suricata
flow:established,to_server; flowbits:isset,ET.Adobe.CVE_2025_54236; http.uri; content:"/rest/default/V1/guest-carts/"; fast_pattern; content:"/order"; distance:0; http.request_body; content:"|22|media/customer_address/"; content:!"|22|"; within:1; http.method; content:"PUT"; target:dest_ip;
Rule dependencies
⚠ Higher-order rule. It fires on other rules' alerts, not on raw events, so it cannot fire on its own. Deploy the rules it depends on too.
Depends on
-
correlates · Suricata flowbits
ET.Adobe.CVE_2025_54236