CVE-2026-48384
ColdFusion is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker with
CVSS
4.9
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 11, 2026 · Last modified: Aug 11, 2026 · CWE-20
Not enough EPSS history yet.
ColdFusion is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker with high privileges could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-713904.0 MED—
———CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized limited write access. Exploitation of this issue does not require user interaction.6hCVE-2026-703255.5 MED—
———Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.6hCVE-2026-703235.5 MED—
———Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally.6hCVE-2026-703225.5 MED—
———Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.6hCVE-2026-703205.5 MED—
———Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.6hCVE-2026-703195.5 MED—
———Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information locally.6h