All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-48437
MEDIUMpublished 2026-08-11 17:18 UTC · 1 day ago · modified 2026-08-12 21:03 UTC
5.5
CVSS / 10
// description
CAI Content Credentials is affected by an Improper Certificate Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page.
// weaknesses (CWE)
- CWE-295