CVE-2026-48285
Adobe ColdFusion, coldfusion 취약점
ColdFusion versions 2025.9, 2023.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction. Scope is changed.
- 대응 우선순위
- 점검
- CVSS
- 8.6
- EPSS
- 0.94% 백분위 57.4% · 2026.08.02 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.07.01