CVE-2026-89276

CRITICAL Status: Awaiting Analysis

CVSS Scores

CVSS v3.x Base Score
9.9
CRITICAL

Description

Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.

Published
September 22, 2026 6:17 PM
Last Modified
September 22, 2026 7:05 PM
Source
[email protected]

Weaknesses (CWE)

CWE-94

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.