Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2021-21044 Acrobat Reader DC Out-Of-Bounds Write Vulnerability Could Lead To Arbitrary Code Execution — Acrobat Reader CWE-787 7.8 - 2021-02-11
CVE-2021-21046 Acrobat Reader DC Buffer Overflow Vulnerability Could Lead To Arbitrary Code Execution — Acrobat Reader CWE-787 6.5 - 2021-02-11
CVE-2021-21057 Acrobat Reader DC Invalid Memory Read Due To An Uninitialized Pointer — Acrobat Reader CWE-476 6.6 Medium 2021-02-11
CVE-2021-21017 Acrobat Reader DC Heap-based Buffer Overflow Vulnerability Could Lead To Arbitrary Code Execution — Acrobat Reader CWE-122 8.8 High 2021-02-11
CVE-2021-21042 Acrobat Reader DC Out-Of-Bounds Read Information Disclosure Vulnerability — Acrobat Reader CWE-125 5.5 - 2021-02-11
CVE-2021-21045 Acrobat Reader DC Improper Installer Access Control Vulnerability Could Lead To Privilege Escalation — Acrobat Reader CWE-284 8.2 High 2021-02-11
CVE-2021-21060 Acrobat Pro DC Improper File Parsing Could Lead to Information Disclosure — Acrobat Reader CWE-20 4.6 Medium 2021-02-11
CVE-2021-21061 Acrobat Pro DC Use-After-Free Vulnerability Could Lead to Information Disclosure — Acrobat Reader CWE-416 3.3 - 2021-02-11
CVE-2021-21016 Magento Commerce Unauthorized Data Modification Could Lead to Arbitrary Code Execution — Magento Commerce CWE-78 9.1 - 2021-02-11
CVE-2021-21015 Magento Commerce Unauthorized Data Modification Could Lead to Arbitrary Code Execution — Magento Commerce CWE-78 9.1 - 2021-02-11
CVE-2021-21018 Magnto Commerce Unauthorized Data Modification Could Lead To Arbitrary Code Execution — Magento Commerce CWE-78 9.1 - 2021-02-11
CVE-2021-21019 Magento Commerce XML Injection Could Lead To Remote Code Execution — Magento Commerce CWE-91 9.1 - 2021-02-11
CVE-2021-21020 Magento Commerce Improper Access Control Vulnerability — Magento Commerce CWE-284 5.9 - 2021-02-11
CVE-2021-21024 Magento Commerce Blind SQL Injection Could Lead To Unauthorized Access — Magento Commerce CWE-89 6.5 - 2021-02-11
CVE-2021-21025 Magento Commerce XML Injection Could Lead To Arbitrary Code Execution — Magento Commerce CWE-91 9.1 - 2021-02-11
CVE-2021-21026 Magento Commerce Incorrect permissions Could Lead To Unauthorized Access — Magento Commerce CWE-285 4.9 - 2021-02-11
CVE-2021-21029 Magento Commerce Reflected Cross-site Scripting Vulnerability Could Lead To Arbitrary JavaScript Execution — Magento Commerce CWE-79 4.8 Medium 2021-02-11
CVE-2021-21032 Magento Commerce Failure To Invalidate User Session Could Lead To Unauthorized Access — Magento Commerce CWE-613 6.5 - 2021-02-11
CVE-2021-21022 Magento Commerce Incorrect permissions Could Lead To Unauthorized Access — Magento Commerce CWE-639 5.3 - 2021-02-11
CVE-2021-21023 Magento Commerce Stored Cross Site Scripting Vulnerability Could Lead To Arbitrary Code Execution — Magento Commerce CWE-79 4.8 - 2021-02-11
CVE-2021-21027 Magento Commerce Cross-Site Request Forgery (CSRF) Could Lead To Unauthorized Data Modification — Magento Commerce CWE-352 4.3 - 2021-02-11
CVE-2021-21030 Magento Commerce Stored Cross-site Scripting Could Lead To Arbitrary Javascript Execution — Magento Commerce CWE-79 6.1 - 2021-02-11
CVE-2021-21031 Magento Commerce Failure To Invalidate User Session Could Lead To Unauthorized Access — Magento.com CWE-613 5.6 - 2021-02-11
CVE-2021-21043 Reflected Cross-site Scripting (XSS) on version-compare and page-compare tools — Experience Manager CWE-79 6.1 Medium 2021-02-02
CVE-2021-21007 Uncontrolled search path element vulnerability in Illustrator 25.0 could lead to arbitrary code execution — Illustrator CWE-427 7.0 High 2021-01-13
CVE-2021-21006 Heap buffer overflow when handling crafted font file could lead to arbitrary code execution — Photoshop CWE-122 8.6 High 2021-01-13
CVE-2021-21008 Uncontrolled Search Path Element vulnerability in Animate 21.0 — Animate CWE-427 7.0 High 2021-01-13
CVE-2021-21009 Server-side request forgery (SSRF) in Campaign Classic could lead to sensitive information disclosure — Campaign CWE-918 8.6 High 2021-01-13
CVE-2021-21010 Uncontrolled search path element in Adobe InCopy — InCopy CWE-427 7.0 High 2021-01-13
CVE-2021-21011 Uncontrolled Search Path Element in Adobe Captivate 2019 — Captivate CWE-427 7.0 High 2021-01-13

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.