Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2024-54040 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Connect CWE-79 5.4 Medium 2024-12-10
CVE-2024-54049 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-54036 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Connect CWE-79 9.3 Critical 2024-12-10
CVE-2024-54041 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Connect CWE-79 5.4 Medium 2024-12-10
CVE-2024-54039 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Connect CWE-79 5.4 Medium 2024-12-10
CVE-2024-54051 Adobe Connect | URL Redirection to Untrusted Site ('Open Redirect') (CWE-601) — Adobe Connect CWE-601 6.1 Medium 2024-12-10
CVE-2024-54042 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-54034 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 9.3 Critical 2024-12-10
CVE-2024-54044 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-49550 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-54038 Adobe Connect | Improper Access Control (CWE-284) — Adobe Connect CWE-284 4.3 Medium 2024-12-10
CVE-2024-54047 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-54032 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Connect CWE-79 9.3 Critical 2024-12-10
CVE-2024-54046 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Connect CWE-79 6.1 Medium 2024-12-10
CVE-2024-52985 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-45155 Animate | Access of Uninitialized Pointer (CWE-824) — Animate CWE-824 7.8 High 2024-12-10
CVE-2024-52987 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-45156 Animate | NULL Pointer Dereference (CWE-476) — Animate CWE-476 7.8 High 2024-12-10
CVE-2024-52982 Animate | Improper Input Validation (CWE-20) — Animate CWE-20 7.8 High 2024-12-10
CVE-2024-52989 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-53953 Animate | Use After Free (CWE-416) — Animate CWE-416 7.8 High 2024-12-10
CVE-2024-52990 Animate | Buffer Underwrite ('Buffer Underflow') (CWE-124) — Animate CWE-124 7.8 High 2024-12-10
CVE-2024-53954 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-52983 Animate | Integer Overflow or Wraparound (CWE-190) — Animate CWE-190 7.8 High 2024-12-10
CVE-2024-52988 Animate | Out-of-bounds Write (CWE-787) — Animate CWE-787 7.8 High 2024-12-10
CVE-2024-52984 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-52986 Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) — Animate CWE-191 7.8 High 2024-12-10
CVE-2024-49538 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator CWE-787 7.8 High 2024-12-10
CVE-2024-49541 Illustrator | Out-of-bounds Read (CWE-125) — Illustrator CWE-125 5.5 Medium 2024-12-10
CVE-2024-49537 After Effects | Stack-based Buffer Overflow (CWE-121) — After Effects CWE-121 7.8 High 2024-12-10

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.