Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2021-36024 Magento Commerce Improper Neutralization of Special Elements Used In A Command — Magento Commerce CWE-78 9.1 Critical 2021-09-01
CVE-2021-36031 Magento Commerce Path Traversal In `theme[preview_image]` Parameter Could Lead To Remote Code Execution — Magento Commerce CWE-22 7.2 High 2021-09-01
CVE-2021-36039 Magento Commerce `quoteId` parameter Incorrect Authorization Vulnerability Could Lead To Information Disclosure — Magento Commerce CWE-863 6.5 Medium 2021-09-01
CVE-2021-36029 Magento Commerce Improper Authorization Vulnerability Could Lead To Remote Code Execution — Magento Commerce CWE-285 9.1 Critical 2021-09-01
CVE-2021-36026 Magento Commerce Stored Cross-site Scripting Vulnerability — Magento Commerce CWE-79 6.5 Medium 2021-09-01
CVE-2021-36032 Magento Commerce Improper Input Validation Could Lead To Information Exposure and Privilege Escalation — Magento Commerce CWE-20 8.3 High 2021-09-01
CVE-2021-36038 Magento Commerce Multishipping Module Improper Input Validation Could Lead To Information Exposure — Magento Commerce CWE-20 6.5 Medium 2021-09-01
CVE-2021-36002 Adobe Captivate Installer Creation of Temporary File In Directory With Incorrect Permissions Could Lead To Privilege Escalation — Captivate CWE-379 5.0 Medium 2021-09-01
CVE-2021-36028 Magento Commerce XML Injection Vulnerability Could Lead To Remote Code Execution — Magento Commerce CWE-91 9.1 Critical 2021-09-01
CVE-2021-36034 Magento Commerce Improper Input Validation Could Lead To Remote Code Execution — Magento Commerce CWE-20 9.1 Critical 2021-09-01
CVE-2021-36022 Magento Commerce Widgets Update Layout XML Injection Vulnerability Could Lead To Remote Code Execution — Magento Commerce CWE-78 9.1 Critical 2021-09-01
CVE-2021-36033 Magento Commerce Widgets Module XML Injection Vulnerability Could Lead To Remote Code Execution — Magento Commerce CWE-91 9.1 Critical 2021-09-01
CVE-2021-36037 Magento Commerce Improper Authorization Vulnerability Could Lead To Information Exposure — Magento Commerce CWE-285 6.5 Medium 2021-09-01
CVE-2021-36012 Magento Commerce Gift Card Business Logic Error — Magento Commerce CWE-840 6.5 Medium 2021-09-01
CVE-2021-28594 Creative Cloud Desktop installer Uncontrolled Search Path element could lead to arbitrary code execution — Prelude CWE-427 7.8 High 2021-08-24
CVE-2021-28633 Adobe Creative Cloud Installer Arbitrary File Write — Creative Cloud (desktop component) CWE-379 6.1 Medium 2021-08-24
CVE-2021-28629 Adobe Animate heap corruption vulnerability could lead to arbitrary code execution — Animate CWE-122 7.8 - 2021-08-24
CVE-2021-28630 Adobe Animate FLA File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Animate CWE-125 3.3 Low 2021-08-24
CVE-2021-28622 Adobe Animate BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Animate CWE-787 7.8 - 2021-08-24
CVE-2021-28619 Adobe Animate out-of-bounds read vulnerability could lead to sensitive information disclosure — Animate CWE-125 5.5 Medium 2021-08-24
CVE-2021-28620 Adobe Animate heap corruption vulnerability could lead to arbitrary code execution — Animate CWE-122 7.8 - 2021-08-24
CVE-2021-28621 Adobe Animate FLA File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — Animate CWE-125 7.8 High 2021-08-24
CVE-2021-28617 Adobe Animate out-of-bounds read vulnerability could lead to sensitive information disclosure — Animate CWE-125 6.5 - 2021-08-24
CVE-2021-28618 Adobe Animate out-of-bounds read vulnerability could lead to sensitive information disclosure — Animate CWE-125 6.5 - 2021-08-24
CVE-2021-28614 Adobe After Effects Out-of-bounds Read vulnerability — After Effects CWE-125 6.1 Medium 2021-08-24
CVE-2021-28612 Adobe After Effects Out-of-bounds Read vulnerability — After Effects CWE-125 6.1 Medium 2021-08-24
CVE-2021-28615 Adobe After Effects Out-of-bounds Read vulnerability could lead to sensitive information disclosure — After Effects CWE-125 5.5 Medium 2021-08-24
CVE-2021-28608 Adobe After Effects heap corruption vulnerability could lead to arbitrary code execution — After Effects CWE-122 7.8 - 2021-08-24
CVE-2021-28610 Adobe After Effects heap corruption vulnerability could lead to arbitrary code execution — After Effects CWE-122 7.8 High 2021-08-24
CVE-2021-28611 Adobe After Effects Out-of-bounds Read vulnerability — After Effects CWE-125 6.1 Medium 2021-08-24

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.