CVE-2017-3066CISA KEVEPSS p99.8%

CVE-2017-3066Adobe ColdFusion Deserialization Vulnerability

Adobe / ColdFusion

Description

Adobe ColdFusion contains a deserialization vulnerability in the Apache BlazeDS library that allows for arbitrary code execution.

Scoring

EPSS90.60% probability of exploitation · percentile 99.8% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2025-02-24

(incoming)1

TypeTargetConfidenceTier
KEVEntryAdobe ColdFusion Deserialization Vulnerabilitykev-cve-2017-30660%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Adobe ColdFusion Deserialization of Untrusted Data Vulnerability
CVE
Adobe ColdFusion Unrestricted File Upload Vulnerability
CVE
CVE-2025-61810
CVE
CVE-2025-24447
CVE
CVE-2025-30284
CVE
Adobe ColdFusion Information Disclosure Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.