⚡ Exploit-DB.ai CRITICAL
CRITICAL

CVE-2023-26360

Published: March 18, 2026 · Source: National Vulnerability Database (NVD)

⚡ AI Threat Assessment

ColdFusion unauthenticated RCE actively exploited against US government agencies per CISA. Apply Adobe PSIRT patches immediately. ColdFusion is a persistent high-risk platform; consider migration if business-critical applications can be moved off it.

📋 Official Description

Adobe ColdFusion improper access control vulnerability allows arbitrary code execution by unauthenticated remote attackers in limited attack scenarios.

Get Real-Time CVE Alerts

Supernova subscribers receive AI-triaged CVE alerts the moment they're published — before the PoC drops.

Start Supernova — $99/mo →