Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4915

Browse all 4915 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2024-30302 ZDI-CAN-23077: Adobe Acrobat Reader DC AcroForm Use-After-Free Information Disclosure Vulnerability — Acrobat Reader CWE-416 5.5 Medium 2024-05-02
CVE-2024-30301 ZDI-CAN-23042: Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability — Acrobat Reader CWE-416 7.8 High 2024-05-02
CVE-2024-30303 ZDI-CAN-23044: Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability — Acrobat Reader CWE-416 7.8 High 2024-05-02
CVE-2024-30305 ZDI-CAN-23043: Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability — Acrobat Reader CWE-416 7.8 High 2024-05-02
CVE-2024-30306 ZDI-CAN-23106: Adobe Acrobat Reader DC AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability — Acrobat Reader CWE-125 7.8 High 2024-05-02
CVE-2024-30304 ZDI-CAN-23040: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability — Acrobat Reader CWE-416 7.8 High 2024-05-02
CVE-2024-30271 Adobe Illustrator 2023 CC 27.7 Memory Corruption Out-Of-Bounds-Write Vulnerability III. — Illustrator CWE-787 7.8 High 2024-04-11
CVE-2024-30272 Adobe Illustrator 2024 GIF file parsing Out-Of-Bound Write remote code execution vulnerabiity — Illustrator CWE-787 7.8 High 2024-04-11
CVE-2024-30273 Adobe Illustrator 2024 PS file Parsing Stack based Buffer Overflow Remote Code Execution Vulnerability — Illustrator CWE-121 7.8 High 2024-04-11
CVE-2024-20797 Out-of-bounds access vulnerability in Adobe Animate that directly changes the rip when parsing FLA files. — Animate CWE-125 7.8 High 2024-04-11
CVE-2024-20794 Adobe Animate 2024 WAV File Parsing Null Pointer Dereference — Animate CWE-476 5.5 Medium 2024-04-11
CVE-2024-20796 Adobe Animation SWF File Parsing Memory Corruption — Animate CWE-125 5.5 Medium 2024-04-11
CVE-2024-20795 Animate has an arbitrary code execution vulnerability when parsing svg files — Animate CWE-190 7.8 High 2024-04-11
CVE-2024-20798 Illustrator 2024 CDR File parsing Out of Bound Read Information disclosure vulnerability — Illustrator CWE-125 5.5 Medium 2024-04-11
CVE-2024-20771 Bridge 2024 MOV File parsing memory corruption — Bridge CWE-125 5.5 Medium 2024-04-11
CVE-2024-20772 Adobe Media Encoder 2024 AI file parsing Stack based buffer overflow — Media Encoder CWE-121 7.8 High 2024-04-10
CVE-2024-20766 Adobe Indesign 2024 TIF File Parsing Out-Of-Bound Read Information Disclosure Vulnerabiity — InDesign Desktop CWE-125 5.5 Medium 2024-04-10
CVE-2024-20770 Adobe Photoshop 2024 TIF File parsing Out-Of-Bound Read — Photoshop Desktop CWE-125 5.5 Medium 2024-04-10
CVE-2024-20758 Adobe Commerce | Improper Input Validation (CWE-20) — Adobe Commerce CWE-20 9.0 Critical 2024-04-10
CVE-2024-20759 Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Commerce CWE-79 8.1 High 2024-04-10
CVE-2024-20737 Adobe After Effect 2024 RGB File parsing Memory Corruption Vulnerability — After Effects CWE-125 5.5 Medium 2024-04-10
CVE-2024-26097 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26087 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-20779 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-20780 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26046 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26084 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26076 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26047 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10
CVE-2024-26122 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager CWE-79 5.4 Medium 2024-04-10

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.