CVE-2026-48386: ColdFusion | Use of a Broken or Risky Cryptographic Algorithm (CWE-327)
Published Aug 11, 2026
·Updated
ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue does not require user interaction.
Affected Software
1 affected component
Adobe ColdFusion
Event History
Aug 11, 2026
CVE Published
via MITRE·04:30 PM
Data Sourced
via MITRE·04:30 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-48386?
The severity of CVE-2026-48386 is high with a score of 7.5.
2
What is the risk associated with CVE-2026-48386?
CVE-2026-48386 has a risk rating of 43.
3
How do I fix CVE-2026-48386?
To fix CVE-2026-48386, ensure you update Adobe ColdFusion to the latest version that addresses this vulnerability.
4
What type of attack can exploit CVE-2026-48386?
CVE-2026-48386 can be exploited to disclose sensitive information without user interaction.
5
What cryptographic issue does CVE-2026-48386 involve?
CVE-2026-48386 involves the use of a broken or risky cryptographic algorithm.