logo

Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution

ID: 65ae6dd4-6a9e-5fa5-9e22-46936528493c

STIX ID: report--65ae6dd4-6a9e-5fa5-9e22-46936528493c

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-11-11

Date Updated: 2026-04-27

...
...

Multiple critical and high-severity vulnerabilities affecting a range of Adobe products (InDesign, InCopy, Photoshop, Illustrator including iPad, Substance 3D Stager, Adobe Format Plugins, and Adobe Pass) have been disclosed, covering issues such as use-after-free, heap-based buffer overflows, out-of-bounds reads/writes, integer underflow, and incorrect authorization. Successful exploitation of the most severe flaws could allow arbitrary code execution in the context of the logged-on user, potentially enabling program installation, data access/modification, or account creation depending on user privileges.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.