< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-08-12T16:43:03+05:30

Adobe Addresses Critical CVSS 10.0 Vulnerabilities in ColdFusion and Campaign Classic

Adobe released critical patches for three CVSS 10.0 vulnerabilities in ColdFusion and Campaign Classic, including command injection and authorization flaws that could enable arbitrary code execution. The updates require immediate deployment, with priority 1 ratings due to their high exploit risk and no evidence of active exploitation.

Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation.

The most severe of the flaws are listed below -

CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could

Read original article

*** END OF TRANSMISSION ***