vulnerability
APSB25-105: Security updates available for ColdFusion (CVE-2025-61823)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:M/Au:M/C:C/I:N/A:N) | Dec 9, 2025 | Dec 22, 2025 | Dec 23, 2025 |
Severity
6
CVSS
(AV:N/AC:M/Au:M/C:C/I:N/A:N)
Published
Dec 9, 2025
Added
Dec 22, 2025
Modified
Dec 23, 2025
Description
Adobe has released security updates for ColdFusion versions 2025, 2023 and 2021. These updates resolves critical and important vulnerability that could lead to arbitrary file system write, arbitrary file system read, arbitrary code execution, security feature bypass, and priviledge escalation.
Solutions
adobe-coldfusion-2021-release-update-23adobe-coldfusion-2023-release-update-17adobe-coldfusion-2025-release-update-5
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.