Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2026-34637 Premiere Pro | Out-of-bounds Write (CWE-787) — Premiere CWE-787 7.8 High 2026-05-12
CVE-2026-34638 Premiere Pro | Use After Free (CWE-416) — Premiere CWE-416 7.8 High 2026-05-12
CVE-2026-34636 Premiere Pro | Out-of-bounds Write (CWE-787) — Premiere CWE-787 7.8 High 2026-05-12
CVE-2026-34632 Photoshop Installer | CWE-427: Uncontrolled Search Path Element — Adobe Photoshop Installer CWE-427 8.6 High 2026-04-15
CVE-2026-27297 Adobe Framemaker | Integer Underflow (Wrap or Wraparound) (CWE-191) — Adobe Framemaker CWE-191 7.8 High 2026-04-14
CVE-2026-27300 Adobe Framemaker | Access of Uninitialized Pointer (CWE-824) — Adobe Framemaker CWE-824 5.5 Medium 2026-04-14
CVE-2026-27296 Adobe Framemaker | Integer Underflow (Wrap or Wraparound) (CWE-191) — Adobe Framemaker CWE-191 7.8 High 2026-04-14
CVE-2026-27290 Adobe Framemaker | Untrusted Search Path (CWE-426) — Adobe Framemaker CWE-426 8.6 High 2026-04-14
CVE-2026-27298 Adobe Framemaker | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843) — Adobe Framemaker CWE-843 7.8 High 2026-04-14
CVE-2026-27294 Adobe Framemaker | Out-of-bounds Read (CWE-125) — Adobe Framemaker CWE-125 7.8 High 2026-04-14
CVE-2026-27295 Adobe Framemaker | Out-of-bounds Write (CWE-787) — Adobe Framemaker CWE-787 7.8 High 2026-04-14
CVE-2026-27301 Adobe Framemaker | Heap-based Buffer Overflow (CWE-122) — Adobe Framemaker CWE-122 5.5 Medium 2026-04-14
CVE-2026-27299 Adobe Framemaker | Improper Input Validation (CWE-20) — Adobe Framemaker CWE-20 6.3 Medium 2026-04-14
CVE-2026-27293 Adobe Framemaker | Heap-based Buffer Overflow (CWE-122) — Adobe Framemaker CWE-122 7.8 High 2026-04-14
CVE-2026-27292 Adobe Framemaker | Use After Free (CWE-416) — Adobe Framemaker CWE-416 7.8 High 2026-04-14
CVE-2026-34619 ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) — ColdFusion 2025 CWE-22 7.7 High 2026-04-14
CVE-2026-27308 ColdFusion | Uncontrolled Resource Consumption (CWE-400) — ColdFusion 2025 CWE-400 2.4 Low 2026-04-14
CVE-2026-27282 ColdFusion | Improper Input Validation (CWE-20) — ColdFusion 2025 CWE-20 7.5 High 2026-04-14
CVE-2026-27305 ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) — ColdFusion 2025 CWE-22 8.6 High 2026-04-14
CVE-2026-27304 ColdFusion | Improper Input Validation (CWE-20) — ColdFusion 2025 CWE-20 9.3 Critical 2026-04-14
CVE-2026-27306 ColdFusion | Improper Input Validation (CWE-20) — ColdFusion 2025 CWE-20 8.4 High 2026-04-14
CVE-2026-27307 ColdFusion | Uncontrolled Resource Consumption (CWE-400) — ColdFusion 2025 CWE-400 2.4 Low 2026-04-14
CVE-2026-34631 InCopy | Out-of-bounds Write (CWE-787) — InCopy CWE-787 7.8 High 2026-04-14
CVE-2026-27287 InCopy | Out-of-bounds Read (CWE-125) — InCopy CWE-125 7.8 High 2026-04-14
CVE-2026-34630 Bridge | Heap-based Buffer Overflow (CWE-122) — Bridge CWE-122 7.8 High 2026-04-14
CVE-2026-27312 Bridge | Heap-based Buffer Overflow (CWE-122) — Bridge CWE-122 7.8 High 2026-04-14
CVE-2026-27222 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-04-14
CVE-2026-27310 Bridge | Heap-based Buffer Overflow (CWE-122) — Bridge CWE-122 7.8 High 2026-04-14
CVE-2026-27311 Bridge | Heap-based Buffer Overflow (CWE-122) — Bridge CWE-122 7.8 High 2026-04-14
CVE-2026-27313 Bridge | Heap-based Buffer Overflow (CWE-122) — Bridge CWE-122 7.8 High 2026-04-14

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.