Integer Underflow Vulnerability in CAI Content Credentials from Adobe
CVE-2026-71444

6.2MEDIUM

Key Information:

Vendor

Adobe

Vendor
CVE Published:
25 August 2026

What is CVE-2026-71444?

The CAI Content Credentials by Adobe is susceptible to an Integer Underflow vulnerability. This flaw allows attackers to trigger a denial-of-service condition, causing the application to crash without the need for user interaction. By exploiting this vulnerability, malicious actors could disrupt normal operations, highlighting the importance of timely updates and security measures to safeguard applications and user data.

Affected Version(s)

C2PA Tool 0

Content Credentials Rust SDK 0

C2PA Tool c2patool-v0.27.11

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.