← Back to browse · API

CVE-2023-44353

Severity
CRITICAL
CVSS
9.8
EPSS
0.80178
Risk score
67.26
CISA KEV
No
PoC
No
Published
2023-11-17
Modified
2024-09-04
First seen
2026-08-07
Aliases
EUVD-2023-48707, GHSA-G46M-G2GP-9X28
Products
Adobe:ColdFusion 0 ≤2021.11
Sources
euvd EUVD-2023-48707

Description

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.

References