← Back

CVE-2026-34667

nvd nist
Published: May 12, 2026Modified: Jun 17, 2026

JSON object

Loading...
6.2
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.5 / Impact: 3.6
Source: psirt@adobe.com (Secondary)

Description

CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

Affected (2)

Products: Adobe: C2pa, C2pa Web
2 products
C2pa
C2pa Web
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Before 0.80.1
Before 0.7.1

Timeline

No history available yet.