Heise.De
Critical Vulnerabilities Found in Adobe Products Allowing Code Execution
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Multiple critical vulnerabilities have been identified in Adobe products, including Campaign Classic and ColdFusion, with CVEs such as CVE-2026-48362 and CVE-2026-71398 rated at a CVSS score of 10. Attackers could exploit these vulnerabilities to execute arbitrary code, potentially compromising entire systems. The vulnerabilities could allow unauthorized actions, including installing programs and altering data, depending on user privileges. Adobe has released patches for affected versions, including ColdFusion 2023 and Campaign Classic ACC v7. Despite the severity, there are currently no reports of active exploitation. Security experts recommend immediate patching to mitigate risks. The vulnerabilities were disclosed on August 11, 2026, and are classified as critical.
Key Points: • Adobe products, including Campaign Classic and ColdFusion, have critical vulnerabilities. • CVE-2026-48362 and CVE-2026-71398 have a CVSS score of 10, allowing for arbitrary code execution. • Patches are available, and immediate installation is recommended to prevent potential exploitation.