Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 10 min 126 bronnen 1 kritiek 2 vandaag
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2026-48287

HIGH · 7.4 CVSS Gepubliceerd: CWE-426

Beschrijving NL

Cai Content Credentials wordt beïnvloed door een Untrusted Search Path-kwetsbaarheid die kan leiden tot het uitvoeren van willekeurige code in de context van de huidige gebruiker. Exploit is afhankelijk van omstandigheden buiten de controle van de aanvaller. Exploitatie van dit probleem vereist gebruikersinteractie in die zin dat een slachtoffer een kwaadwillig vervaardigde URL moet bezoeken of interactie moet hebben met een gecompromitteerde webpagina. Scope is gewijzigd.

Origineel (Engels) tonen

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

Vendors

Adobe Apple Google Linux Microsoft

Affected products

C2pa C2pa-web C2patool Iphone Os Macos Android Linux Kernel Windows

References