logo

Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution

ID: d91291d0-a4b6-5824-8ecd-cd1d84849e94

STIX ID: report--d91291d0-a4b6-5824-8ecd-cd1d84849e94

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-07-23

Date Updated: 2026-04-27

...
...

This technical summary catalogs multiple CVEs across many Adobe products (After Effects, Substance 3D Viewer/Stager, Audition, InCopy, InDesign, Connect, Dimension, Illustrator, FrameMaker, Experience Manager, ColdFusion, etc.), describing a range of memory corruption, deserialization, injection, and web vulnerabilities — some of which could enable arbitrary code execution — and references the ATT&CK technique T1203 (Exploitation for Client Execution).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.