Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2024-07-09 CVE-2024-34140 Unspecified vulnerability in Adobe Bridge
Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2024-07-09 CVE-2024-34123 Unspecified vulnerability in Adobe Premiere PRO
Premiere Pro versions 23.6.5, 24.4.1 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution.
local
high complexity
adobe
7.0
2024-06-13 CVE-2024-20753 Unspecified vulnerability in Adobe Photoshop
Photoshop Desktop versions 24.7.3, 25.7 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe
7.8
2024-06-13 CVE-2024-30299 Unspecified vulnerability in Adobe Framemaker Publishing Server 2020/2022
Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation.
network
low complexity
adobe
critical
9.8
2024-06-13 CVE-2024-30300 Unspecified vulnerability in Adobe Framemaker Publishing Server 2020/2022
Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Information Exposure vulnerability (CWE-200) that could lead to privilege escalation.
network
low complexity
adobe
critical
9.8
2024-06-13 CVE-2024-34129 Unspecified vulnerability in Adobe Acrobat Reader 20.6.0/20.6.2/20.9.0
Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a security feature bypass.
local
high complexity
adobe
7.5
2024-06-13 CVE-2024-34107 Unspecified vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe
critical
9.8
2024-06-13 CVE-2024-34108 Unspecified vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
network
low complexity
adobe
7.2
2024-06-13 CVE-2024-34111 Server-Side Request Forgery (SSRF) vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to arbitrary file system read.
network
low complexity
adobe CWE-918
8.8
2024-06-13 CVE-2024-36152 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4