Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2020-9681 Adobe Genuine Service privilege escalation vulnerability — GoCart CWE-427 7.3 - 2021-04-16
CVE-2020-9668 AGSService program mishandling symbolic links — GoCart CWE-284 7.8 - 2021-04-16
CVE-2020-9667 Uncontrolled Search Path Element in AGSService.exe — GoCart CWE-427 6.5 Medium 2021-04-16
CVE-2021-28548 Adobe Photoshop parsing JS buffer overflow vulnerability could lead to arbitrary code execution — Photoshop CWE-120 7.8 - 2021-04-15
CVE-2021-21087 ColdFusion Improper neutralization of web input during page generation could lead to arbitrary JavaScript execution in the browser — ColdFusion CWE-79 6.1 - 2021-04-15
CVE-2021-21092 Adobe Bridge DCM File Parsing Memory Corruption could lead to arbitrary code execution — Bridge CWE-788 7.8 - 2021-04-15
CVE-2021-21091 Adobe Bridge HEIC File Parsing Out-Of-Bounds Read vulnerability could lead to information disclosure — Bridge CWE-125 3.3 - 2021-04-15
CVE-2021-28549 Adobe Photoshop parsing JS buffer overflow vulnerability could lead to arbitrary code execution — Photoshop CWE-120 7.8 - 2021-04-15
CVE-2021-21095 Adobe Bridge TTF Font Parsing Out-Of-Bounds Write vulnerability could lead to arbitrary code execution — Bridge CWE-787 7.8 - 2021-04-15
CVE-2021-21093 Adobe Bridge SGI File Parsing Memory Corruption vulnerability could lead to arbitrary code execution — Bridge CWE-788 7.8 - 2021-04-15
CVE-2021-21100 Adobe Digital Editions Arbitrary file system write vulnerability — Digital Editions CWE-379 7.8 High 2021-04-15
CVE-2021-21096 Adobe Bridge Genuine Software Service Incorrect Permission Assignment could lead to Denial-of-Service — Bridge CWE-285 5.5 - 2021-04-15
CVE-2021-21094 Adobe Bridge PDF File Parsing Out-Of-Bounds Write vulnerability could lead to arbitrary code execution — Bridge CWE-787 7.8 - 2021-04-15
CVE-2021-28546 Acrobat Reader DC Missing Support for Integrity Check — Acrobat Reader CWE-353 6.5 Medium 2021-04-01
CVE-2021-28545 Acrobat Reader DC Missing Support for Integrity Check — Acrobat Reader CWE-353 8.1 High 2021-04-01
CVE-2021-21082 Adobe Photoshop Memory Corruption — Photoshop CWE-788 7.8 High 2021-03-12
CVE-2021-21078 Adobe Creative Cloud Unquoted Service Path in CCXProcess — Creative Cloud (desktop component) CWE-426 7.3 - 2021-03-12
CVE-2021-21074 Adobe Animate out-of-bounds read vulnerability — Animate CWE-125 5.5 - 2021-03-12
CVE-2021-21056 Adobe FrameMaker Out-of-Bounds Read Vulnerability Could Lead To Remote Code Execution — FrameMaker CWE-125 7.8 - 2021-03-12
CVE-2021-21085 Adobe Connect CSV injection via export feature could lead to code execution — Connect CWE-20 7.8 High 2021-03-12
CVE-2021-21071 Adobe Animate memory corruption vulnerability — Animate CWE-787 7.8 - 2021-03-12
CVE-2021-21067 Adobe Photoshop CoolType arbitrary stack manipulation in Type 1/Multiple Master — Photoshop CWE-787 7.8 High 2021-03-12
CVE-2021-21075 Adobe Animate out-of-bounds read vulnerability — Animate CWE-125 5.5 - 2021-03-12
CVE-2021-21080 Adobe Connect Reflected Cross-site Scripting via query parameter — Connect CWE-79 6.1 - 2021-03-12
CVE-2021-21076 Adobe Animate out-of-bounds read vulnerability — Animate CWE-125 5.5 - 2021-03-12
CVE-2021-21068 Adobe Creative Cloud installer arbitrary file overwrite vulnerability — Creative Cloud (desktop component) CWE-379 6.6 - 2021-03-12
CVE-2021-21077 Adobe Animate heap-based overflow vulnerability — Animate CWE-122 7.8 - 2021-03-12
CVE-2021-21069 Adobe Creative Cloud Privilege Escalation Vulnerability — Creative Cloud (desktop component) CWE-20 7.8 - 2021-03-12
CVE-2021-21073 Adobe Animate out-of-bounds read vulnerability — Animate CWE-125 5.5 - 2021-03-12
CVE-2021-21072 Adobe Animate out-of-bounds read vulnerability — Animate CWE-125 5.5 - 2021-03-12

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.