Executive brief
Adobe Content Credentials, a tool for verifying the authenticity and origin of digital content, is affected by an input validation flaw that allows bypassing security checks. An attacker can trick a user into visiting a malicious URL or webpage to gain unauthorized write access to credentials, potentially compromising the integrity of authenticated content.
Technical details
The vulnerability stems from improper input validation in Adobe Content Credentials that enables a security feature bypass. Exploitation requires user interaction—specifically visiting a maliciously crafted URL or compromised web page—and results in limited unauthorized write access to the system.
Affected products
- Adobe Content Credentials
Timeline
- 2026-09-22: disclosed