Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2024-39390 Adobe Indesign 2024 DOC File Parsing Memory Corruption — InDesign Desktop CWE-787 7.8 High 2024-08-14
CVE-2024-41866 Adobe Indesign 2024 DOC File Parsing Null Pointer Dereference — InDesign Desktop CWE-476 5.5 Medium 2024-08-14
CVE-2024-41852 Adobe Indesign 2024 AVI File Parsing Stack Based Buffer Overflow — InDesign Desktop CWE-121 7.8 High 2024-08-14
CVE-2024-41853 Indesign 2024 EPS File Parsing Heap Memory Corruption Remote Code Execution Vulnerability — InDesign Desktop CWE-122 7.8 High 2024-08-14
CVE-2024-41851 Adobe InDesign (Beta) has an integer overflow vulnerability when parsing SVG file — InDesign Desktop CWE-190 7.8 High 2024-08-14
CVE-2024-39389 Adobe Indesign PDF File Parsing Stack Based Buffer Overflow Remote Code Execution Vulnerability — InDesign Desktop CWE-121 7.8 High 2024-08-14
CVE-2024-39393 Adobe Indesign 2024 PCT File Parsing Memory Corruption Remote Code Execution Vulnerability — InDesign Desktop CWE-125 7.8 High 2024-08-14
CVE-2024-39395 Adobe Indesign 2024 DOC File Parsing Null Pointer Dereference — InDesign Desktop CWE-476 5.5 Medium 2024-08-14
CVE-2024-39394 Adobe Indesign 2024 PDF File Parsing Out Of Bound Write Remote Code Execution Vulnerability — InDesign Desktop CWE-787 7.8 High 2024-08-14
CVE-2024-39388 ZDI-CAN-24055: Adobe Substance 3D Stager SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Substance3D - Stager CWE-416 7.8 High 2024-08-14
CVE-2024-39387 ZDI-CAN-24047: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Bridge CWE-125 5.5 Medium 2024-08-14
CVE-2024-41840 ZDI-CAN-24607: Adobe Bridge JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Bridge CWE-787 7.8 High 2024-08-14
CVE-2024-39386 ZDI-CAN-24057: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Bridge CWE-787 7.8 High 2024-08-14
CVE-2024-34117 Adobe Photoshop 2024 MPO File Parsing Use-After-Free vulnerability — Photoshop Desktop CWE-416 7.8 High 2024-08-14
CVE-2024-34134 Illustrator | Out-of-bounds Read (CWE-125) — Illustrator CWE-125 5.5 Medium 2024-08-14
CVE-2024-34136 Adobe Illustrator PSD File Parsing Null Pointer dereference — Illustrator CWE-476 5.5 Medium 2024-08-14
CVE-2024-41856 Illustrator | Improper Input Validation (CWE-20) — Illustrator CWE-20 7.8 High 2024-08-14
CVE-2024-34118 Adobe illustrator 2024 TIF File parsing Division by zero denial of service — Illustrator CWE-20 5.5 Medium 2024-08-14
CVE-2024-34133 Adobe Illustrator CC 2023 v27.9 Vulnerability I — Illustrator CWE-787 7.8 High 2024-08-14
CVE-2024-34138 Adobe Illustrator CGM File Parsing Division By zero — Illustrator CWE-476 5.5 Medium 2024-08-14
CVE-2024-34135 Adobe Illustrator CC 2023 v27.9 Vulnerability II — Illustrator CWE-125 5.5 Medium 2024-08-14
CVE-2024-34137 Adobe Illustrator 2024 CGM File Parsing Null Pointer Dereference — Illustrator CWE-476 5.5 Medium 2024-08-14
CVE-2024-34125 ZDI-CAN-24027: Adobe Dimension GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Dimension CWE-125 5.5 Medium 2024-08-14
CVE-2024-41865 Adobe Dimension Untrusted Search Path lead to load malicious DLL swift.dll — Dimension CWE-426 7.8 High 2024-08-14
CVE-2024-34126 ZDI-CAN-24028: Adobe Dimension USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Dimension CWE-125 5.5 Medium 2024-08-14
CVE-2024-20789 ZDI-CAN-24030: Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — Dimension CWE-416 7.8 High 2024-08-14
CVE-2024-34124 ZDI-CAN-24031: Adobe Dimension SKP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Dimension CWE-787 7.8 High 2024-08-14
CVE-2024-20790 Adobe Dimension Memory Corruption Out-of-Bounds-READ Vulnerability I, when parsing FBX file — Dimension CWE-125 5.5 Medium 2024-08-14
CVE-2024-39419 A user without ship permissions can ship the orders — Adobe Commerce CWE-285 4.3 Medium 2024-08-14
CVE-2024-39403 Stored XSS through Webhook module public key configuration — Adobe Commerce CWE-79 7.6 High 2024-08-14

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.