5.5
CVE-2026-48437
- EPSS 0.1%
- Veröffentlicht 11.08.2026 16:59:52
- Zuletzt bearbeitet 14.08.2026 15:39:05
- CVE-Watchlists
- Unerledigt
CAI Content Credentials | Improper Certificate Validation (CWE-295)
CAI Content Credentials is affected by an Improper Certificate Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.1% | 0.011 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Adobe | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
|
CWE-295 Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.
https://helpx.adobe.com/security/products/content-authenticity-sdk/apsb26-111.html