CVE-2026-48329: ColdFusion | Insufficient Session Expiration (CWE-613)
ColdFusion is affected by an Insufficient Session Expiration vulnerability that could result in a Security feature bypass. A high-privileged attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue does not require user interaction.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-48329?
The severity of CVE-2026-48329 is classified as low with a score of 2.7.
What kind of vulnerability is CVE-2026-48329?
CVE-2026-48329 is an Insufficient Session Expiration vulnerability that may lead to security feature bypass.
Who can exploit CVE-2026-48329?
A high-privileged attacker could exploit CVE-2026-48329 to bypass security measures and gain unauthorized write access.
What is the potential impact of CVE-2026-48329?
Exploitation of CVE-2026-48329 could result in unauthorized write access due to insufficient session expiration.
Is user interaction required to exploit CVE-2026-48329?
No, exploitation of CVE-2026-48329 does not require user interaction.