User Input Validation Flaw in Revive Adserver Affects Ad Delivery Security
CVE-2026-44959
8.8HIGH
What is CVE-2026-44959?
A security flaw in Revive Adserver allows low-privileged users to manipulate delivery limitations by injecting unexpected parameters. This could lead to the execution of malicious PHP code during banner delivery. Although input sanitization has been enhanced to filter out unauthorized parameters, users of Revive Adserver versions prior to 6.0.7 are urged to review their settings and apply necessary updates to mitigate potential security risks.
Affected Version(s)
Adserver 0 <= 6.0.6
