logo

CVE-2026-34621: Adobe Acrobat Reader Zero-Day Enables Arbitrary Code Execution via Crafted PDF

ID: df4bea54-7da9-54ea-b331-0dd18196d940

STIX ID: report--df4bea54-7da9-54ea-b331-0dd18196d940

Feed Name: SOCRadar Blog

Threat Score
85/100

Date Published: 2026-04-13

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

**Adobe released an emergency update for CVE-2026-34621, a prototype-pollution flaw in Acrobat/Reader that allows arbitrary code execution when a user opens a crafted PDF; Adobe confirmed it is being exploited in the wild and SOCRadar observed a possible PoC on a dark web forum, so organizations should prioritize patching, restrict handling of untrusted PDFs, and hunt for suspicious Acrobat JavaScript activity.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.