CVE-2026-71398 – Adobe Campaign Classic

CVSS 10 CRITICAL Critical - Same Day Deployment

“Critical authorization flaws can turn improper access into full code execution.”

Adobe Campaign Classic is affected by two critical incorrect authorization vulnerabilities that can result in arbitrary code execution in the context of the current user without user interaction. CVE-2026-71398 has a CVSS score of 10.0, Critical severity. CVE-2026-27302 has a CVSS score of 10.0, Critical severity.

Both vulnerabilities represent maximum-severity exposure and affect authorization controls within Adobe Campaign Classic.

Key Details

Affected Product
Adobe Campaign
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-863
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.