CVE-2026-48437

CAI Content Credentials is affected by an Improper Certificate Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:c2pa:*:*:*:*:*:rust:*:*
cpe:2.3:a:adobe:c2pa-web:*:*:*:*:*:node.js:*:*
cpe:2.3:a:adobe:c2patool:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-11 17:18

Updated : 2026-08-28 00:18


NVD link : CVE-2026-48437

Mitre link : CVE-2026-48437

CVE.ORG link : CVE-2026-48437


JSON object : View

Products Affected

adobe

  • c2pa-web
  • c2patool
  • c2pa
CWE
CWE-295

Improper Certificate Validation