CRITICAL 9.9 CVE-2026-48273 Published 8 Sept 2026

ColdFusion Eval Injection Vulnerability

Worried this affects one of your servers?

ColdFusion is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability.

This could allow a low-privileged attacker to execute arbitrary code without user interaction.

Reference: CVE-2026-48273 on NVD

← Back to Security News