Junglewise Threat Intelligence

CVE-2026-89277: Adobe Content Credentials integer overflow denial of service

CVE-2026-89277 · Severity: medium · CVSS 5.5 · Published 2026-09-22

Technologies: Adobe Content Credentials. Vendors: Adobe.

Executive brief

Adobe Content Credentials, which authenticates and verifies the origin of digital content, contains an integer overflow vulnerability that can crash the application. An attacker can exploit this by tricking a user into visiting a malicious URL or webpage, resulting in a temporary service disruption. No authentication is required and the attack succeeds through user interaction alone.

Technical details

An integer overflow or wraparound vulnerability in Adobe Content Credentials allows an attacker to cause an application crash (denial-of-service). The vulnerability requires user interaction—specifically visiting a maliciously crafted URL or compromised webpage—to trigger the overflow condition. The attack vector is network-based and no special privileges are needed to exploit it.

Affected products

  • Adobe Content Credentials

Timeline

  • 2026-09-22: disclosed

References

Related threats