Improper Input Validation in CAI Content Credentials by Adobe
CVE-2026-48436

6.5MEDIUM

What is CVE-2026-48436?

CAI Content Credentials by Adobe is vulnerable to an improper input validation issue that may allow attackers to bypass security features. This vulnerability can be exploited if a user interacts with a specially crafted URL or a compromised web page, enabling unauthorized write access to the system. Prompt awareness and action are essential to mitigate potential security risks associated with this exploit.

Affected Version(s)

Content Credentials Command-Line Tool 0

Content Credentials Command-Line Tool 0

Content Credentials JS SDK 0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.