Vulnerabilities > Adobe > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-39403 Cross-site Scripting vulnerability in Adobe Commerce
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe CWE-79
7.6
2024-08-14 CVE-2024-41858 Integer Overflow or Wraparound vulnerability in Adobe Incopy
InCopy versions 18.5.2, 19.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-190
7.8
2024-08-14 CVE-2024-41864 Out-of-bounds Write vulnerability in Adobe Substance 3D Designer 12.4.0/13.1.0
Substance3D - Designer versions 13.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-07-09 CVE-2024-20781 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-07-09 CVE-2024-20782 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-07-09 CVE-2024-20783 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-07-09 CVE-2024-20785 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-07-09 CVE-2024-34139 Integer Overflow or Wraparound vulnerability in Adobe Bridge
Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-190
7.8
2024-07-02 CVE-2024-34122 Out-of-bounds Read vulnerability in Adobe Acrobat
Acrobat for Edge versions 126.0.2592.68 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2024-06-13 CVE-2024-20753 Out-of-bounds Read vulnerability in Adobe Photoshop
Photoshop Desktop versions 24.7.3, 25.7 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8