Improper Input Validation in CAI Content Credentials by Adobe
CVE-2026-19480

7.5HIGH

What is CVE-2026-19480?

CAI Content Credentials developed by Adobe is impacted by an Improper Input Validation vulnerability, which may allow attackers to circumvent established security features. This flaw can enable unauthorized write access without requiring any user interaction, posing a significant risk to users and data integrity. It is crucial for organizations using this product to be aware of this vulnerability and take necessary precautions to safeguard their systems.

Affected Version(s)

Content Credentials Command-Line Tool 0

Content Credentials Rust SDK 0

Content Credentials Command-Line Tool c2patool-v0.27.17

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.