Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction
Critical vulnerability — CVSS 10
What to do
- Critical severity — schedule an urgent patch.
Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation platform, that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-48449, carries a severity score of 10.0 on the CVSS scoring system. It has been described as a case of incorrect authorization that could result in
CVE · detail
- CVE-2026-48449EPSS 0.96%NVD ↗