PolyShell is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
PolyShell is a vulnerability tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed March 19, 2026; most recent activity March 21, 2026.
A newly disclosed vulnerability named 'PolyShell' affects all stable versions of Magento Open Source and Adobe Commerce, allowing unauthenticated remote code execution (RCE) and account takeover. The flaw arises from…
PolyShell is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
The most recent intelligence report mentioning PolyShell on ThreatCluster is dated March 21, 2026. Activity was first observed March 19, 2026, giving a tracked span from then to March 21, 2026.
Across ThreatCluster reporting, PolyShell most frequently co-occurs with Cross-site Scripting, Zero-day Exploit, T1190 - Exploit Public-Facing Application, T1203 - Exploitation for Client Execution, Adobe Commerce, among 8 tracked related entities.
The most significant recent cluster is “Critical 'PolyShell' Vulnerability Exposes Magento to RCE and Account Takeover” (10 articles · Updated March 20, 2026). PolyShell appears across 1 threat cluster in total, listed above with sources.
PolyShell appears in 3 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.