Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2026-48399 Adobe Campaign Classic (ACC) | Violation of Secure Design Principles (CWE-657) — Adobe Campaign Classic CWE-657 7.5 High 2026-08-03
CVE-2026-48326 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) — Adobe Campaign Classic CWE-89 9.9 Critical 2026-08-03
CVE-2026-34641 Premiere Pro | Out-of-bounds Write (CWE-787) — Premiere CWE-787 7.8 High 2026-07-31
CVE-2026-48448 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) — Adobe Campaign Classic CWE-89 8.6 High 2026-07-30
CVE-2026-48449 Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) — Adobe Campaign Classic CWE-863 10.0 Critical 2026-07-30
CVE-2026-48394 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge CWE-787 7.8 High 2026-07-28
CVE-2026-48391 Bridge | Untrusted Search Path (CWE-426) — Adobe Bridge CWE-426 8.2 High 2026-07-28
CVE-2026-48374 Bridge | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) — Adobe Bridge CWE-22 7.8 High 2026-07-28
CVE-2026-48392 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge CWE-787 7.8 High 2026-07-28
CVE-2026-48390 Bridge | Incorrect Authorization (CWE-863) — Adobe Bridge CWE-863 8.2 High 2026-07-28
CVE-2026-48395 Bridge | Untrusted Search Path (CWE-426) — Adobe Bridge CWE-426 8.6 High 2026-07-28
CVE-2026-48393 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge CWE-787 7.8 High 2026-07-28
CVE-2026-48396 Bridge | Incorrect Authorization (CWE-863) — Adobe Bridge CWE-863 8.6 High 2026-07-28
CVE-2026-48372 Format Plugins | Heap-based Buffer Overflow (CWE-122) — Format Plugins CWE-122 7.8 High 2026-07-28
CVE-2026-48388 Photoshop Installer | CWE-427: Uncontrolled Search Path Element — Adobe Photoshop Installer CWE-427 8.6 High 2026-07-28
CVE-2026-48389 DNG SDK | Stack-based Buffer Overflow (CWE-121) — Adobe DNG Software Development Kit (SDK) CWE-121 7.8 High 2026-07-20
CVE-2026-48373 Acrobat Reader | Heap-based Buffer Overflow (CWE-122) — Acrobat DC CWE-122 7.8 High 2026-07-17
CVE-2026-48295 CAI Content Credentials | Insufficiently Protected Credentials (CWE-522) — Content Credentials Rust SDK CWE-522 7.5 High 2026-07-14
CVE-2026-48290 CAI Content Credentials | Server-Side Request Forgery (SSRF) (CWE-918) — Content Credentials Rust SDK CWE-918 8.2 High 2026-07-14
CVE-2026-48357 CAI Content Credentials | Uncontrolled Resource Consumption (CWE-400) — Content Credentials Rust SDK CWE-400 6.2 Medium 2026-07-14
CVE-2026-48296 CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191) — Content Credentials Rust SDK CWE-191 6.2 Medium 2026-07-14
CVE-2026-48287 CAI Content Credentials | Untrusted Search Path (CWE-426) — Content Credentials Rust SDK CWE-426 7.4 High 2026-07-14
CVE-2026-48312 CAI Content Credentials | Improper Input Validation (CWE-20) — Content Credentials Rust SDK CWE-20 6.8 Medium 2026-07-14
CVE-2026-48302 CAI Content Credentials | Improper Input Validation (CWE-20) — Content Credentials Rust SDK CWE-20 6.2 Medium 2026-07-14
CVE-2026-48351 CAI Content Credentials | Improper Input Validation (CWE-20) — Content Credentials Rust SDK CWE-20 7.5 High 2026-07-14
CVE-2026-48354 CAI Content Credentials | Integer Overflow or Wraparound (CWE-190) — Content Credentials Rust SDK CWE-190 6.2 Medium 2026-07-14
CVE-2026-48298 CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191) — Content Credentials Rust SDK CWE-191 6.2 Medium 2026-07-14
CVE-2026-48352 CAI Content Credentials | Improper Input Validation (CWE-20) — Content Credentials Rust SDK CWE-20 7.5 High 2026-07-14
CVE-2026-48353 CAI Content Credentials | Improper Input Validation (CWE-20) — Content Credentials Rust SDK CWE-20 5.5 Medium 2026-07-14
CVE-2026-48336 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 CWE-787 7.8 High 2026-07-14

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.