CVE-2026-48312EPSS p18.8%

CVE-2026-48312CVE-2026-48312

adobe / c2pa

Description

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue does not require user interaction.

Scoring

CVSS 6.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
EPSS0.28% probability of exploitation · percentile 18.8% · 2026-10-05T12:00:23Z
Last modified2026-08-28
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.