logo

Adobe, Oracle Users: Critical Vulnerability Notice

ID: eb15b80b-1a5c-5e25-8aa2-2d5d3c5b2fa2

STIX ID: report--eb15b80b-1a5c-5e25-8aa2-2d5d3c5b2fa2

Feed Name: Cyble Blog

Threat Score
75/100

Date Published: 2025-10-21

Date Updated: 2026-07-16

...
...

CISA added two deserialization vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2017-3066 in Adobe ColdFusion (historic but still exploitable if unpatched) and CVE-2024-20953 in Oracle Agile PLM (CVSS 3.1 base score 8.8), both of which can enable remote code execution; vendors have issued patches and the report recommends immediate patching, configuration review, and monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.