Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4915

Browse all 4915 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2023-25873 Adobe Substance 3D Stager SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — Substance3D - Stager CWE-125 7.8 High 2023-03-27
CVE-2023-25874 Adobe Substance 3D Stager SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — Substance3D - Stager CWE-122 7.8 High 2023-03-27
CVE-2023-25875 Adobe Substance 3D Stager OBJ File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Substance3D - Stager CWE-125 5.5 Medium 2023-03-27
CVE-2023-25876 Adobe Substance 3D Stager OBJ File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Substance3D - Stager CWE-125 5.5 Medium 2023-03-27
CVE-2023-25877 Adobe Substance 3D Stager OBJ File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Substance3D - Stager CWE-125 5.5 Medium 2023-03-27
CVE-2023-25878 Adobe Substance 3D Stager OBJ File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Substance3D - Stager CWE-125 5.5 Medium 2023-03-27
CVE-2023-25908 Adobe Photoshop SVG file Use After Free Arbitrary code execution — Photoshop CWE-416 7.8 High 2023-03-27
CVE-2023-26359 Adobe ColdFusion Deserialization of Untrusted Data Arbitrary code execution — ColdFusion CWE-502 9.8 Critical 2023-03-23
CVE-2023-26360 Adobe ColdFusion Improper Access Control Arbitrary code execution — ColdFusion CWE-284 8.6 High 2023-03-23
CVE-2023-26361 Adobe ColdFusion Directory Traversal Arbitrary file system read Vulnerability — ColdFusion CWE-22 4.9 Medium 2023-03-23
CVE-2023-21615 Adobe Experience Manager | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-21616 Adobe Experience Manager | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-22252 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-22253 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-22254 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-22256 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22257 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22258 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22259 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22260 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22261 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22262 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22263 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22264 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22265 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22266 AEM URL Redirection to Untrusted Site Security feature bypass — Experience Manager CWE-601 5.4 Medium 2023-03-22
CVE-2023-22269 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2023-03-22
CVE-2023-22271 AEM Weak Cryptography for Passwords Security feature bypass — Experience Manager CWE-261 5.3 Medium 2023-03-22
CVE-2023-25859 Adobe Illustrator Improper Input Validation Remote Code Execution Vulnerability — Illustrator CWE-20 7.8 High 2023-03-22
CVE-2023-25860 Adobe Illustrator Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Illustrator CWE-787 7.8 High 2023-03-22

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.