CAI Content Credentials is affected by an Insufficiently Protected Credentials vulnerability that could result in disclosure of sensitive information. An attacker could leverage this vulnerability to gain unauthorized read access. Exploitation of this issue does not require user interaction.

Project Subscriptions

Vendors Products
C2pa-web Subscribe
C2patool Subscribe
Content Credentials Command-line Tool Subscribe
Content Credentials Js Sdk Subscribe
Content Credentials Rust Sdk Subscribe
Iphone Os Subscribe
Android Subscribe
Linux Kernel Subscribe
Microsoft Subscribe
Windows Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 02 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Adobe
Adobe content Credentials Command-line Tool
Adobe content Credentials Js Sdk
Adobe content Credentials Rust Sdk
Vendors & Products Adobe
Adobe content Credentials Command-line Tool
Adobe content Credentials Js Sdk
Adobe content Credentials Rust Sdk

Wed, 15 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Description CAI Content Credentials is affected by an Insufficiently Protected Credentials vulnerability that could result in disclosure of sensitive information. An attacker could leverage this vulnerability to gain unauthorized read access. Exploitation of this issue does not require user interaction.
Title CAI Content Credentials | Insufficiently Protected Credentials (CWE-522)
Weaknesses CWE-522
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published:

Updated: 2026-08-27T22:39:06.163Z

Reserved: 2026-05-21T15:28:38.135Z

Link: CVE-2026-48295

cve-icon Vulnrichment

Updated: 2026-07-14T23:33:51.730Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-14T22:17:00.960

Modified: 2026-08-28T00:17:44.990

Link: CVE-2026-48295

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T20:36:32Z

Weaknesses