Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4879

Browse all 4879 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2024-36203 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36191 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36208 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-26068 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-26086 Adobe Experience Manager | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36155 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-26057 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36185 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36210 Adobe Experience Manager | Cross-site Scripting (Reflected XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-26081 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-26055 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36195 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36161 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36199 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-36232 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-06-13
CVE-2024-30279 ZDI-CAN-22887: Adobe Acrobat Reader DC JPEG2000 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Acrobat Reader CWE-787 7.8 High 2024-05-23
CVE-2024-30280 ZDI-CAN-22867: Adobe Acrobat Pro DC AcroForm Annotation Out-Of-Bounds Read Remote Code Execution Vulnerability — Acrobat Reader CWE-125 7.8 High 2024-05-23
CVE-2024-30314 Dreamweaver Desktop | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) — Dreamweaver Desktop CWE-78 7.8 High 2024-05-16
CVE-2024-30291 Adobe FrameMaker TIF File parsing Out Of Bound Write — Adobe Framemaker CWE-787 7.8 High 2024-05-16
CVE-2024-30292 Adobe FrameMaker GIF File parsing Out Of Bound Write — Adobe Framemaker CWE-787 7.8 High 2024-05-16
CVE-2024-30290 Adobe FrameMaker WEBP File Parsing Out Of Bound Write — Adobe Framemaker CWE-787 7.8 High 2024-05-16
CVE-2024-30283 Adobe FrameMaker ICO File Parsing Heap Memory Corruption — Adobe Framemaker CWE-125 5.5 Medium 2024-05-16
CVE-2024-30286 Adobe FrameMaker DOC File Parsing Memory Corruption — Adobe Framemaker CWE-125 5.5 Medium 2024-05-16
CVE-2024-30288 Adobe FrameMaker 3DS File Parsing Heap Memory Corruption — Adobe Framemaker CWE-122 7.8 High 2024-05-16
CVE-2024-30289 Adobe FrameMaker XLS File Parsing Buffer Overflow — Adobe Framemaker CWE-121 7.8 High 2024-05-16
CVE-2024-30287 Adobe FrameMaker PDF File Pparsing Out of Bound Read — Adobe Framemaker CWE-125 5.5 Medium 2024-05-16
CVE-2024-30295 When Animate parses FLA files, there is a UAF vulnerability caused by referencing uninitialized memory at Animate.exe+0x1149dcf — Animate CWE-476 7.8 High 2024-05-16
CVE-2024-30296 When Animate parses FLA files, there is an out-of-bounds write vulnerability at animate+0x123df28 — Animate CWE-787 7.8 High 2024-05-16
CVE-2024-30294 Adobe Animate OGG File Parsing Heap Memory Corruption remote code execution Vulnerability — Animate CWE-122 7.8 High 2024-05-16
CVE-2024-30298 Adobe Animate SWF File Parsing Memory corruption — Animate CWE-125 5.5 Medium 2024-05-16

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.