Adobe releases security updates addressing seven maximum-severity vulnerabilities affecting its ColdFusion web application development platform and Adobe Campaign Classic marketing automation platform. Multiple outlets report that the defects carry CVSS scores of 10.0 and are classified by Adobe as critical. Adobe states that the flaws could allow arbitrary code execution, privilege escalation, arbitrary file system read, and bypass of security features. The updates are intended to resolve both “critical” and “important” issues within the affected products. While the outlets differ in emphasis, they agree on the scope: the patches cover two Adobe products—ColdFusion and Campaign Classic—and the presence of several vulnerabilities rated at the highest severity level. Users and administrators are expected to apply the released patches to mitigate the reported risks, especially those tied to code execution and unauthorized access. The disclosures point to Adobe’s security advisory/alert as the basis for the described impact and severity ratings.