Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

InDesign Desktop — Vulnerabilities & Security Advisories 131

All 131 CVE vulnerabilities found in InDesign Desktop, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of common weakness vulnerabilities affecting Adobe InDesign Desktop, categorized under the InDesign Desktop tag. It serves as a centralized resource for tracking security flaws that impact this specific desktop publishing application developed by Adobe Inc. The collection focuses on various vulnerability types identified in the product, including injection flaws, improper input validation, and memory corruption issues. The data spans from the initial release of modern versions through the present, covering historical records and recent disclosures to provide a complete timeline of security exposure. This historical perspective allows users to see how mitigation strategies have evolved over time. Visitors can use this repository to track vendor advisories issued by Adobe regarding specific security patches and updates. It enables security professionals to understand the prevalence and characteristics of specific weakness classes within the InDesign environment. Additionally, users can look up the product’s vulnerability history to assess risk exposure for their current installation versions. By correlating reported issues with corresponding fixes, teams can prioritize remediation efforts more effectively. The page aggregates data from multiple sources to ensure accuracy and completeness, offering a reliable reference for compliance audits and security assessments. This streamlined view helps IT administrators and developers quickly identify relevant risks without navigating through scattered documentation or individual vendor portals, ultimately supporting more informed decision-making regarding software maintenance and security posture management for InDesign Desktop deployments.

Vendor: Adobe

CVE IDTitleCVSSSeverityPublished
CVE-2024-49529 InDesign Desktop | Out-of-bounds Read (CWE-125) CWE-125 5.5 Medium2024-11-21
CVE-2024-49510 InDesign Desktop | Out-of-bounds Read (CWE-125) CWE-125 5.5 Medium2024-11-12
CVE-2024-49512 InDesign Desktop | Out-of-bounds Read (CWE-125) CWE-125 5.5 Medium2024-11-12
CVE-2024-49509 InDesign Desktop | Heap-based Buffer Overflow (CWE-122) CWE-122 7.8 High2024-11-12
CVE-2024-49511 InDesign Desktop | Out-of-bounds Read (CWE-125) CWE-125 5.5 Medium2024-11-12
CVE-2024-49507 InDesign Desktop | Heap-based Buffer Overflow (CWE-122) CWE-122 7.8 High2024-11-12
CVE-2024-49508 InDesign Desktop | Heap-based Buffer Overflow (CWE-122) CWE-122 7.8 High2024-11-12
CVE-2024-45137 InDesign Desktop | Unrestricted Upload of File with Dangerous Type (CWE-434) CWE-434 7.8 High2024-10-09
CVE-2024-34127 Adobe Indesign TIF File Parsing Out Of Bound Read CWE-125 5.5 Medium2024-08-14
CVE-2024-41850 Adobe Indesign 2024 TIF File Parsing Heap Memory Corruption CWE-122 7.8 High2024-08-14
CVE-2024-41854 Adobe Indesign 2024 PDF File parsing memory corruption CWE-125 5.5 Medium2024-08-14
CVE-2024-39391 Adobe Indesign XLS File Parsing Out Of Bound Write Remote Code execution vulnerability CWE-787 7.8 High2024-08-14
CVE-2024-39390 Adobe Indesign 2024 DOC File Parsing Memory Corruption CWE-787 7.8 High2024-08-14
CVE-2024-41866 Adobe Indesign 2024 DOC File Parsing Null Pointer Dereference CWE-476 5.5 Medium2024-08-14
CVE-2024-41852 Adobe Indesign 2024 AVI File Parsing Stack Based Buffer Overflow CWE-121 7.8 High2024-08-14
CVE-2024-41853 Indesign 2024 EPS File Parsing Heap Memory Corruption Remote Code Execution Vulnerability CWE-122 7.8 High2024-08-14
CVE-2024-41851 Adobe InDesign (Beta) has an integer overflow vulnerability when parsing SVG file CWE-190 7.8 High2024-08-14
CVE-2024-39389 Adobe Indesign PDF File Parsing Stack Based Buffer Overflow Remote Code Execution Vulnerability CWE-121 7.8 High2024-08-14
CVE-2024-39393 Adobe Indesign 2024 PCT File Parsing Memory Corruption Remote Code Execution Vulnerability CWE-125 7.8 High2024-08-14
CVE-2024-39395 Adobe Indesign 2024 DOC File Parsing Null Pointer Dereference CWE-476 5.5 Medium2024-08-14
CVE-2024-39394 Adobe Indesign 2024 PDF File Parsing Out Of Bound Write Remote Code Execution Vulnerability CWE-787 7.8 High2024-08-14
CVE-2024-39392 Adobe Indesign 2024 EPS File Parsing Heap Memory Corruption Remote Code Execution Vulnerability CWE-122 7.8 High2024-08-02
CVE-2024-39396 Adobe Indesign 2024 PCX File Parsing Out Of Bound Read CWE-125 5.5 Medium2024-08-02
CVE-2024-41836 InDesign Desktop | NULL Pointer Dereference (CWE-476) CWE-476 5.5 Medium2024-07-23
CVE-2024-20781 Adobe Indesign TIF File Parsing Heap Memory Corruption CWE-122 7.8 High2024-07-09
CVE-2024-20785 Adobe Indesign 2024 TIFF File Parsing Memory Corruption Remote Code Execution vulnerability CWE-122 7.8 High2024-07-09
CVE-2024-20782 Adobe Indesign WMF File Parsing Out Of Bound Write CWE-787 7.8 High2024-07-09
CVE-2024-20783 Adobe Indesign 2024 RLE File Parsing Heap Memory Corruption CWE-122 7.8 High2024-07-09
CVE-2024-20766 Adobe Indesign 2024 TIF File Parsing Out-Of-Bound Read Information Disclosure Vulnerabiity CWE-125 5.5 Medium2024-04-10
CVE-2023-47076 Adobe InDesign CC 2023 Memory Corruption Vulnerability IV. CWE-476 5.5 Medium2023-12-13

All 131 known CVE vulnerabilities affecting InDesign Desktop with full Chinese analysis, references, and POCs where available.