CVE-2026-75634Medium· 4.3▾ SunlitCAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized limited wri…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized limited write access. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-19480High· 7.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass
CVE-2026-75633Medium· 5.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service
CVE-2026-75638Medium· 6.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass
CVE-2026-76194Medium· 4.3CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass
CVE-2026-89277Medium· 5.5CAI Content Credentials is affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service
CVE-2026-75632High· 7.5CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service