Adobe

Coldfusion

266 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.6%
  • Veröffentlicht 06.07.2026 16:13:57
  • Zuletzt bearbeitet 28.08.2026 00:17:47

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction....

Medienbericht
  • EPSS 1.45%
  • Veröffentlicht 30.06.2026 15:12:03
  • Zuletzt bearbeitet 28.08.2026 00:17:47

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to inject malici...

Medienbericht
  • EPSS 1.82%
  • Veröffentlicht 30.06.2026 15:12:02
  • Zuletzt bearbeitet 28.08.2026 00:17:43

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction....

Medienbericht
  • EPSS 1.82%
  • Veröffentlicht 30.06.2026 15:12:01
  • Zuletzt bearbeitet 28.08.2026 00:17:43

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction....

  • EPSS 0.94%
  • Veröffentlicht 30.06.2026 15:12:00
  • Zuletzt bearbeitet 28.08.2026 00:17:43

ColdFusion versions 2025.9, 2023.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unau...

Medienbericht
  • EPSS 4.16%
  • Veröffentlicht 30.06.2026 15:12:00
  • Zuletzt bearbeitet 28.08.2026 00:17:47

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file system read and limited write access. An attacker could ...

Medienbericht
  • EPSS 0.8%
  • Veröffentlicht 30.06.2026 15:11:59
  • Zuletzt bearbeitet 28.08.2026 00:17:46

ColdFusion versions 2025.9, 2023.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially resulting in arbitrary code ex...

  • EPSS 0.71%
  • Veröffentlicht 30.06.2026 15:11:58
  • Zuletzt bearbeitet 28.08.2026 00:17:47

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabil...

Medienbericht
  • EPSS 5.06%
  • Veröffentlicht 30.06.2026 15:11:57
  • Zuletzt bearbeitet 28.08.2026 00:17:42

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not req...

Warnung Medienbericht
  • EPSS 99.24%
  • Veröffentlicht 30.06.2026 15:11:57
  • Zuletzt bearbeitet 07.10.2026 19:17:37

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary code execution in the context of the current user. Exploitati...