Adobe Releases New Patches for Exploited ColdFusion Vulnerabilities
Adobe has released a second round of patches for some recently disclosed ColdFusion vulnerabilities, including flaws that appear to have been exploited in attacks. On July 11, Adobe announced patches for CVE-2023-29298, an improper access control issue that can lead to a security feature bypass. On July 14, the company informed customers about fixes for CVE-2023-38203, a deserialization issue that could lead to arbitrary code execution. A few days later, cybersecurity firm Rapid7 reported seeing…
Read More
