Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2025-05-13 CVE-2025-30314 Cross-site Scripting vulnerability in Adobe Connect
Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe CWE-79
6.1
2025-05-13 CVE-2025-30315 Cross-site Scripting vulnerability in Adobe Connect
Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe CWE-79
6.1
2025-05-13 CVE-2025-30316 Cross-site Scripting vulnerability in Adobe Connect
Adobe Connect versions 12.8 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe CWE-79
5.4
2025-05-13 CVE-2025-43548 Out-of-bounds Write vulnerability in Adobe Dimension
Dimension versions 4.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-05-13 CVE-2025-43549 Use After Free vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.1.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2025-05-13 CVE-2025-43551 Out-of-bounds Read vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2025-05-13 CVE-2025-43553 Uncontrolled Search Path Element vulnerability in Adobe Substance 3D Modeler
Substance3D - Modeler versions 1.21.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-427
7.8
2025-05-13 CVE-2025-43554 Out-of-bounds Write vulnerability in Adobe Substance 3D Modeler
Substance3D - Modeler versions 1.21.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-05-13 CVE-2025-43559 Improper Input Validation vulnerability in Adobe Coldfusion 2021/2023/2025
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
network
low complexity
adobe CWE-20
critical
9.1
2025-05-13 CVE-2025-43560 Improper Input Validation vulnerability in Adobe Coldfusion 2021/2023/2025
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
network
low complexity
adobe CWE-20
critical
9.1