#5
The Hacker News
general
August 12, 2026 at 11:13 UTC
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
By [email protected] (The Hacker News)
AI Summary
Adobe's August 2026 patch batch includes three CVSS 10.0 vulnerabilities: CVE-2026-48362, an OS command injection in ColdFusion; a critical flaw in Campaign Classic; and CVE-2026-71362 in Adobe Commerce/Magento, which attackers are already exploiting to hijack customer accounts. Security teams running ColdFusion or Magento storefronts should treat these as emergency patches given active exploitation.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →