Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2026-27256 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27237 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27265 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27233 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27236 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27240 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27239 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27234 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27231 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27230 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27229 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27266 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27254 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27228 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27248 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27257 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27226 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27253 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27224 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27250 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager as a Cloud Service CWE-79 5.4 Medium 2026-03-11
CVE-2026-27270 Illustrator | Out-of-bounds Read (CWE-125) — Illustrator Desktop 2026 CWE-125 5.5 Medium 2026-03-10
CVE-2026-27271 Illustrator | Heap-based Buffer Overflow (CWE-122) — Illustrator Desktop 2026 CWE-122 7.8 High 2026-03-10
CVE-2026-21333 Illustrator | Untrusted Search Path (CWE-426) — Illustrator Desktop 2026 CWE-426 8.6 High 2026-03-10
CVE-2026-27268 Illustrator | Out-of-bounds Read (CWE-125) — Illustrator Desktop 2026 CWE-125 5.5 Medium 2026-03-10
CVE-2026-27272 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 CWE-787 7.8 High 2026-03-10
CVE-2026-21362 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 CWE-787 7.8 High 2026-03-10
CVE-2026-27267 Illustrator | Stack-based Buffer Overflow (CWE-121) — Illustrator Desktop 2026 CWE-121 7.8 High 2026-03-10
CVE-2026-27221 Acrobat Reader | Improper Certificate Validation (CWE-295) — Acrobat DC CWE-295 5.5 Medium 2026-03-10
CVE-2026-27278 Acrobat Reader | Use After Free (CWE-416) — Acrobat DC CWE-416 7.8 High 2026-03-10
CVE-2026-27220 Acrobat Reader | Use After Free (CWE-416) — Acrobat DC CWE-416 7.8 High 2026-03-10

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.