Vulnerabilities > Adobe > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-39426 Out-of-bounds Read vulnerability in Adobe products
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2024-08-14 CVE-2024-41831 Use After Free vulnerability in Adobe products
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2024-08-14 CVE-2024-41840 Out-of-bounds Write vulnerability in Adobe Bridge
Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-08-14 CVE-2024-41850 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-08-14 CVE-2024-41851 Integer Overflow or Wraparound vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-190
7.8
2024-08-14 CVE-2024-41852 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-08-14 CVE-2024-41853 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-08-14 CVE-2024-41856 Unspecified vulnerability in Adobe Illustrator
Illustrator versions 28.5, 27.9.4, 28.6, 27.9.5 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe
7.8
2024-08-14 CVE-2024-41865 Untrusted Search Path vulnerability in Adobe Dimension
Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution.
local
low complexity
adobe CWE-426
7.8
2024-08-14 CVE-2024-39398 Improper Restriction of Excessive Authentication Attempts vulnerability in Adobe Commerce
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Restriction of Excessive Authentication Attempts vulnerability that could result in a security feature bypass.
network
high complexity
adobe CWE-307
7.4