Adobe Illustrator是美国奥多比(Adobe)公司的一套基于向量的图像制作软件。 Adobe Illustrator 29.8.4版本和30.1版本及之前版本存在代码问题漏洞,该漏洞源于不受信任的搜索路径,可能导致在当前用户环境中执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Adobe | Illustrator Desktop 2025 | ≤ 29.8.4 |
affected |
29.8.5 |
unaffected | ||
| Adobe | Illustrator Desktop 2026 | ≤ 30.1 |
affected |
30.2 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Illustrator Desktop 2026 | 0 ~ 30.1 | - |
|
| Adobe | Illustrator Desktop 2025 | 0 ~ 29.8.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-27271 | 7.8 HIGH | Illustrator | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-27280 | 7.8 HIGH | DNG SDK | Out-of-bounds Write (CWE-787) |
| CVE-2026-27269 | 7.8 HIGH | Premiere Pro | Out-of-bounds Read (CWE-125) |
| CVE-2026-27279 | 7.8 HIGH | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
| CVE-2026-27276 | 7.8 HIGH | Substance3D - Stager | Use After Free (CWE-416) |
| CVE-2026-27275 | 7.8 HIGH | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
| CVE-2026-27273 | 7.8 HIGH | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
| CVE-2026-27277 | 7.8 HIGH | Substance3D - Stager | Use After Free (CWE-416) |
| CVE-2026-27274 | 7.8 HIGH | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
| CVE-2026-27272 | 7.8 HIGH | Illustrator | Out-of-bounds Write (CWE-787) |
| CVE-2026-21362 | 7.8 HIGH | Illustrator | Out-of-bounds Write (CWE-787) |
| CVE-2026-27267 | 7.8 HIGH | Illustrator | Stack-based Buffer Overflow (CWE-121) |
| CVE-2026-27278 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-27220 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-27270 | 5.5 MEDIUM | Illustrator | Out-of-bounds Read (CWE-125) |
| CVE-2026-27218 | 5.5 MEDIUM | Substance3D - Painter | NULL Pointer Dereference (CWE-476) |
| CVE-2026-27281 | 5.5 MEDIUM | DNG SDK | Integer Overflow or Wraparound (CWE-190) |
| CVE-2026-27268 | 5.5 MEDIUM | Illustrator | Out-of-bounds Read (CWE-125) |
| CVE-2026-27221 | 5.5 MEDIUM | Acrobat Reader | Improper Certificate Validation (CWE-295) |
| CVE-2026-27215 | 5.5 MEDIUM | Substance3D - Painter | NULL Pointer Dereference (CWE-476) |
Showing top 20 of 28 CVEs. View all on vendor page → →
No comments yet