- What: Adobe patches critical vulnerabilities in Campaign Classic and Bridge
- Impact: Vulnerabilities could allow remote code execution and file reads
Vulnerability Management Adobe fixes critical vulnerabilities in Campaign Classic and Bridge August 3, 2026 Share By SC Staff (Photo by MANJUNATH KIRAN/AFP via Getty Images) As outlined in Security Affairs, Adobe has released security updates to address critical vulnerabilities in its enterprise marketing automation platform, Adobe Campaign Classic. The most severe flaw, with a CVSS score of 10.0, could allow attackers to execute arbitrary code remotely without any user interaction. The critical vulnerability in Adobe Campaign Classic, identified as CVE-2026-48449, stems from incorrect authorization and poses a significant risk for remote code execution. Additionally, a high-severity SQL injection flaw (CVE-2026-48448) could enable arbitrary file reads. Both issues are patched in version 7.4.3 build 9398. Adobe also addressed eight critical vulnerabilities in Adobe Bridge, including issues related to incorrect authorization, untrusted search paths, path traversal, and out-of-bounds writes, with CVSS scores ranging from 7.8 to 8.6. These vulnerabilities could lead to arbitrary code execution or privilege escalation. Organizations using these Adobe products are strongly advised to apply the security updates promptly to mitigate potential exploitation risks. Adobe has stated it is not aware of any active exploits in the wild for these specific vulnerabilities. Source: Security Affairs SC Staff Related Vulnerability Management Why responsible vulnerability disclosure is now a boardroom issue Kara Sprague August 3, 2026 Organizations need a clear vulnerability disclosure process as AI speeds flaw discovery. Vulnerability Management Cantina launches with $8 million to automate post-vulnerability security SC Staff July 30, 2026 The platform utilizes AI agents to automate the entire security workflow after a vulnerability is identified, including discovery, triage, remediation, and verification of fixes. Cloud Security Critical Azure Cosmos DB flaw risked cross-tenant compromise Steve Zurier July 30, 2026 Patched Azure Cosmos DB bug threatened Microsoft and customer databases. Related Events Cybercast State of Vulnerability Management Thu Sep 10 Cybercast Why Mythos is the cybersecurity crisis we need On-Demand Event Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Bug Buffer Overflow Disassembly You can skip this ad in 5 seconds