CVE-2026-76000: ColdFusion | Uncontrolled Resource Consumption (CWE-400)
Published Sep 8, 2026
·Updated
ColdFusion is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service condition. Exploitation of this issue does not require user interaction.
Affected Software
1 affected component
Adobe ColdFusion
Event History
Sep 8, 2026
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The vulnerability can be exploited without privileges or user interaction. The attack vector is adjacent network access.
2
What is the expected impact of successful exploitation?
Successful exploitation can exhaust system resources and cause an application denial-of-service. The supplied metrics indicate availability impact only; no confidentiality or integrity impact is identified.