CVE-2026-47910: Dreamweaver Desktop | Incorrect Authorization (CWE-863)
Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47910?
The severity of CVE-2026-47910 is rated as medium with a score of 6.3.
How do I fix CVE-2026-47910?
To fix CVE-2026-47910, upgrade to the latest version of Adobe Dreamweaver Desktop.
What type of vulnerability is CVE-2026-47910?
CVE-2026-47910 is classified as an Incorrect Authorization vulnerability (CWE-863).
What could an attacker do with CVE-2026-47910?
An attacker could exploit CVE-2026-47910 to perform arbitrary file system reads, accessing sensitive files outside of intended scope.
Which versions of Adobe Dreamweaver are affected by CVE-2026-47910?
Adobe Dreamweaver Desktop versions 21.7 and earlier are affected by CVE-2026-47910.