Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4915

Browse all 4915 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2022-44469 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-44473 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-35694 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-35696 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-42343 Adobe Campaign Classic Server-Side Request Forgery Arbitrary file system read — Adobe Campaign Classic (ACC) CWE-918 6.5 Medium 2022-12-19
CVE-2022-42351 AEM Incorrect Authorization Security feature bypass — Experience Manager CWE-863 4.3 Medium 2022-12-19
CVE-2022-42360 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-44462 AEM Reflected XSS Arbitrary code execution — Experience Manager CWE-79 5.4 Medium 2022-12-19
CVE-2022-44498 Adobe Illustrator Out-of-Bound Read Memory leak — Illustrator CWE-125 5.5 Medium 2022-12-19
CVE-2022-44499 Adobe Illustrator Out-of-Bound Read Memory leak — Illustrator CWE-125 5.5 Medium 2022-12-19
CVE-2022-44500 Adobe Illustrator Out-of-Bound Read Memory leak — Illustrator CWE-125 5.5 Medium 2022-12-19
CVE-2022-44502 Adobe Illustrator Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Illustrator CWE-125 5.5 Medium 2022-12-19
CVE-2022-38435 Adobe Illustrator PCX File Parsing Memory Corruption Remote Code Execution Vulnerability — Illustrator CWE-20 7.8 High 2022-10-25
CVE-2022-38436 Adobe Illustrator CDR File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — Illustrator CWE-125 7.8 High 2022-10-25
CVE-2022-42344 [CVE-2021-36032] Magento IDOR Leads to Account Takeover — Adobe Commerce CWE-863 8.8 High 2022-10-20
CVE-2022-38444 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38448 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38442 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38443 Adobe Dimension GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Dimension CWE-125 5.5 Medium 2022-10-14
CVE-2022-38446 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38441 Adobe Dimension GLB File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — Dimension CWE-125 7.8 High 2022-10-14
CVE-2022-38445 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38447 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2022-10-14
CVE-2022-38440 Adobe Dimension SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — Dimension CWE-125 7.8 High 2022-10-14
CVE-2022-35689 Adobe Commerce Improper Access Control Security feature bypass — Magento Commerce CWE-284 5.3 Medium 2022-10-14
CVE-2022-35698 Adobe Commerce Stored XSS Arbitrary code execution — Magento Commerce CWE-79 10.0 Critical 2022-10-14
CVE-2022-38437 Adobe Acrobat Reader Use After Free Memory leak — Acrobat Reader CWE-416 5.5 Medium 2022-10-14
CVE-2022-38449 Adobe Acrobat Reader DC JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Acrobat Reader CWE-125 5.5 Medium 2022-10-14
CVE-2022-35691 Adobe Acrobat Reader NULL Pointer Dereference Application denial-of-service — Acrobat Reader CWE-476 5.5 Medium 2022-10-14
CVE-2022-38450 Adobe Acrobat Reader DC XFA Parsing Stack Overflow Remote Code Execution Vulnerability — Acrobat Reader CWE-121 7.8 High 2022-10-14

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.