CVE-2026-48375: ColdFusion | Incorrect Authorization (CWE-863)
Published Aug 11, 2026
·Updated
ColdFusion is affected by an Incorrect Authorization vulnerability that could result in an application denial-of-service. A low-privileged attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Affected Software
1 affected component
Adobe ColdFusion
Event History
Aug 11, 2026
CVE Published
via MITRE·04:31 PM
Data Sourced
via MITRE·04:31 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-48375?
The severity of CVE-2026-48375 is medium, rated at 6.5.
2
How do I fix CVE-2026-48375?
To fix CVE-2026-48375, apply the latest security updates provided by Adobe for ColdFusion.
3
What type of vulnerability is CVE-2026-48375?
CVE-2026-48375 is categorized as an Incorrect Authorization vulnerability.
4
What impact does CVE-2026-48375 have?
CVE-2026-48375 can result in a denial-of-service condition, allowing an attacker to crash the application.
5
Who is affected by CVE-2026-48375?
CVE-2026-48375 affects users of Adobe ColdFusion.