CVE-2026-71443: CAI Content Credentials | Improper Input Validation (CWE-20)
Published Aug 25, 2026
·Updated
CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Affected Software
3 affected components
CAI Content Credentials
Adobe C2pa Rust<=0.89.0
Adobe C2patool<=0.26.70
Remediation
Event History
Aug 25, 2026
CVE Published
via MITRE·05:31 PM
Data Sourced
via MITRE·05:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
Can this be exploited remotely without credentials or user interaction?
Yes. The CVSS vector indicates network-based exploitation with low attack complexity, no privileges required, and no user interaction required.
2
What is the expected impact of a successful attack?
A successful exploit can crash the application and cause a denial-of-service condition. The provided CVSS vector indicates availability impact only, with no stated confidentiality or integrity impact.