hacker-news · Crawled Aug 12, 2026

Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws

Read original article ↗

AI Summary

Adobe has released security updates to address multiple critical vulnerabilities in ColdFusion, Commerce, and Campaign Classic. The most severe flaws include three with a CVSS score of 10.0, which could allow arbitrary code execution or privilege escalation if exploited. These vulnerabilities affect on-premise and hybrid deployments of Campaign Classic, while Adobe-hosted instances have already been patched. Although no active exploitation has been observed, Adobe assigns a Priority 1 rating to these updates due to their high risk, urging administrators to apply patches within 72 hours.

AI-extracted · verify before operational use

No entities or IoCs were extracted from this article.