Adobe format plugins是美国Adobe公司的一系列格式扩展插件。 Adobe Format Plugins 2026.05及之前版本存在缓冲区错误漏洞,该漏洞源于堆缓冲区溢出,可能导致在当前用户上下文中执行任意代码,攻击者需要诱使用户打开恶意文件。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Adobe | Format Plugins | ≤ 2026.05 |
affected |
2026.07 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Format Plugins | 0 ~ 2026.05 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-48388 | 8.6 HIGH | Photoshop Installer | CWE-427: Uncontrolled Search Path Element |
| CVE-2026-48396 | 8.6 HIGH | Bridge | Incorrect Authorization (CWE-863) |
| CVE-2026-48395 | 8.6 HIGH | Bridge | Untrusted Search Path (CWE-426) |
| CVE-2026-48390 | 8.2 HIGH | Bridge | Incorrect Authorization (CWE-863) |
| CVE-2026-48391 | 8.2 HIGH | Bridge | Untrusted Search Path (CWE-426) |
| CVE-2026-48393 | 7.8 HIGH | Bridge | Out-of-bounds Write (CWE-787) |
| CVE-2026-48392 | 7.8 HIGH | Bridge | Out-of-bounds Write (CWE-787) |
| CVE-2026-48374 | 7.8 HIGH | Bridge | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (C |
| CVE-2026-48394 | 7.8 HIGH | Bridge | Out-of-bounds Write (CWE-787) |
No comments yet