CRITICAL
9.9 CVE-2026-48273 Published 8 Sept 2026
ColdFusion Eval Injection Vulnerability
Worried this affects one of your servers?
ColdFusion is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability.
This could allow a low-privileged attacker to execute arbitrary code without user interaction.
Reference: CVE-2026-48273 on NVD
← Back to Security News