CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 02 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe content Credentials Command-line Tool Adobe content Credentials Js Sdk Adobe content Credentials Rust Sdk |
|
| Vendors & Products |
Adobe
Adobe content Credentials Command-line Tool Adobe content Credentials Js Sdk Adobe content Credentials Rust Sdk |
Wed, 15 Jul 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Title | CAI Content Credentials | Improper Input Validation (CWE-20) | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2026-07-14T23:39:13.190Z
Reserved: 2026-05-21T15:28:38.140Z
Link: CVE-2026-48353
Updated: 2026-07-14T23:34:11.541Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-02T20:36:50Z
Weaknesses