CVE-2026-82013: Adobe Campaign

Critical severity, CVSS 9.9. EPSS: 0.8% chance of exploitation in the next 30 days.

Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulnerability to gain elevated access to internal resources. Exploitation of this issue does not require user interaction. Scope is changed.

Affected products

  • Adobe Campaign: up to and including 7.4.3; version 7.4.4 only

Published 2026-09-22. Last modified 2026-09-26.