PULSE
EN VIVO14señales / 24h
FEED
ransomkrybit reclama a hisstw.com · TW · Not Foundransomkrybit reclama a labindia.com · IN · Healthcareransomkrybit reclama a lhyk.com.sg · SG · Otherransomqilin reclama a Wanted · NL · Not Foundransomsilentransomgroup reclama a R...er · Not Foundransomsilentransomgroup reclama a R... D... · Not Foundransomspacebears reclama a Basso Fedele & Figli S.r.l. (Olio Basso) / Villa Raiano · IT · Agriculture and Food Productionransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Foundransomkrybit reclama a hisstw.com · TW · Not Foundransomkrybit reclama a labindia.com · IN · Healthcareransomkrybit reclama a lhyk.com.sg · SG · Otherransomqilin reclama a Wanted · NL · Not Foundransomsilentransomgroup reclama a R...er · Not Foundransomsilentransomgroup reclama a R... D... · Not Foundransomspacebears reclama a Basso Fedele & Figli S.r.l. (Olio Basso) / Villa Raiano · IT · Agriculture and Food Productionransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Found
← Todos los CVEs
CVE Watch12 ago 2026

CVE-2026-48397

Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the cont

CVSS

8.6

Alto

EPSS

KEV

Exploit Today

0

0-100

Publicado: 11 ago 2026 · Última mod.: 12 ago 2026 · CWE-502

EPSS · 30d

Sin historial EPSS suficiente todavía.

Descripción técnica

Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

Referencias oficiales
CVEs relacionados
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-18634
0An insecure handling of serialized objects vulnerability was found in the one of the service of GMS application 9.5.1 (Build 9510.1044) and earlier versions. A local attacker with the ability to interact with the service could exploit this behavior to perform unauthorized actions through the affected component.9h
CVE-2026-703218.8 ALT
0Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.9h
CVE-2026-668088.8 ALT
0Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.9h
CVE-2026-668058.8 ALT
0Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.9h
CVE-2026-658158.8 ALT
0Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.9h
CVE-2026-656658.8 ALT
0Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.9h