Adobe security patch release for CVE-2026-71398
Security Patch Release
Summary
Hide ▲
Show ▼
Adobe released a Priority 1 security update for Campaign Classic to address multiple critical vulnerabilities, including CVE-2026-71398, CVE-2026-27302, and CVE-2026-48381. The flaws could allow arbitrary code execution, and administrators were advised to install the update promptly. A later report described the same patch as part of a broader Adobe update cycle that also covered ColdFusion and Commerce. For Campaign Classic, the fix is tied to ACC v7 7.4.4 build 9400 and applies to fully on-premise deployments and the on-premise components of hybrid deployments.
Related Happenings
Elementor Pro 4.2.2 security update for CVE-2026-32475
Security Patch Release
H score27
First: 20.08.2026 09:04
Last: 20.08.2026 09:04
Sources 1
About this happening:
Elementor Pro released version 4.2.2 to fix CVE-2026-32475, closing an unauthenticated file-upload RCE path in the WordPress plugin. The update targets the Forms mod...
Elementor Pro 4.2.2 security update for CVE-2026-32475
Security Patch ReleaseAbout this happening: Elementor Pro released version 4.2.2 to fix CVE-2026-32475, closing an unauthenticated file-upload RCE path in the WordPress plugin. The update targets the Forms mod...
Adobe security patch release for CVE-2026-48362
Security Patch Release
H score43
First: 11.08.2026 19:50
Last: 11.08.2026 19:50
Sources 1
How related:
CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could lead to arbitrary code execution (Fixed in 2025.0.12 and 2023.0.23)
About this happening:
Adobe shipped a priority 1 update for ColdFusion that fixes 15 security defects, including flaws that could enable arbitrary code execution and application D...
Adobe security patch release for CVE-2026-48362
Security Patch ReleaseHow related: CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could lead to arbitrary code execution (Fixed in 2025.0.12 and 2023.0.23)
About this happening: Adobe shipped a priority 1 update for ColdFusion that fixes 15 security defects, including flaws that could enable arbitrary code execution and application D...
Adobe security patch release for CVE-2026-48395
Security Patch Release
H score39
First: 01.08.2026 10:12
Last: 01.08.2026 10:12
Sources 1
About this happening:
Adobe shipped a security update for Adobe Bridge on 2026-08-01 that closes eight critical-rated flaws with risk of privilege escalation and arbitrary code execut...
Adobe security patch release for CVE-2026-48395
Security Patch ReleaseAbout this happening: Adobe shipped a security update for Adobe Bridge on 2026-08-01 that closes eight critical-rated flaws with risk of privilege escalation and arbitrary code execut...
Google’s Chrome security team security patch release for CVE-2026-17650
Security Patch Release
H score16
First: 30.07.2026 12:15
Last: 30.07.2026 12:15
Sources 1
About this happening:
Google released Chrome 151 security patches for Windows, Mac, and Linux, fixing 370 vulnerabilities and seven critical issues. The update includes CVEs CVE-2026-...
Google’s Chrome security team security patch release for CVE-2026-17650
Security Patch ReleaseAbout this happening: Google released Chrome 151 security patches for Windows, Mac, and Linux, fixing 370 vulnerabilities and seven critical issues. The update includes CVEs CVE-2026-...
Adobe security patch release for CVE-2026-48294
Security Patch Release
H score31
First: 22.07.2026 16:22
Last: 22.07.2026 16:22
Sources 1
About this happening:
Adobe fixed CVE-2026-48294 in the Acrobat Chrome extension, closing a flaw that could expose WhatsApp Web data for users on vulnerable versions. The 26.5.2.3 r...
Adobe security patch release for CVE-2026-48294
Security Patch ReleaseAbout this happening: Adobe fixed CVE-2026-48294 in the Acrobat Chrome extension, closing a flaw that could expose WhatsApp Web data for users on vulnerable versions. The 26.5.2.3 r...
Timeline
-
12.08.2026 14:13 2 articles · 13d ago
Adobe ships critical patches for ColdFusion, Commerce, and Campaign Classic
Mitigation Patch UpdateAdobe shipped updates for ColdFusion, Commerce, and Campaign Classic to fix multiple critical flaws that could enable arbitrary code execution, privilege escalation, and application denial-of-service. The highest-severity issues include CVE-2026-48362, CVE-2026-48273, CVE-2026-71384, CVE-2026-71362, CVE-2026-71398, CVE-2026-27302, and CVE-2026-48381, with the Campaign Classic fixes tied to ACC v7 7.4.4 build 9400. The ColdFusion and Campaign Classic updates have a Priority 1 rating; the Campaign Classic changes apply only to fully on-premise deployments and on-premise components of hybrid deployments, while Adobe-hosted instances have already been remediated and require no customer action.
Show sources
- Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws — thehackernews.com — 12.08.2026 14:13
- Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws — thehackernews.com — 12.08.2026 14:13
-
11.08.2026 19:50 3 articles · 13d ago
Adobe rolls out priority 1 patches for critical Campaign Classic flaws
Mitigation Patch UpdateOn Tuesday, Adobe rolled out a priority 1 update for Campaign Classic that resolves three critical flaws: CVE-2026-71398 and CVE-2026-27302, two incorrect authorization issues, plus CVE-2026-48381, an SQL injection bug. Adobe said the vulnerabilities could lead to arbitrary code execution and urged users to apply the patch immediately.
Show sources
- Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws — www.securityweek.com — 11.08.2026 19:50
- Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws — www.securityweek.com — 11.08.2026 19:50
- Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws — thehackernews.com — 12.08.2026 14:13