Vulnerabilities > Adobe > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-02 CVE-2021-42532 XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe debian
7.8
2022-03-18 CVE-2022-24091 Unspecified vulnerability in Adobe products
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe
7.8
2022-03-16 CVE-2021-40738 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Audition 13.0.5/13.0.6/14.4
Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a WAV file, potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-119
7.8
2022-03-16 CVE-2021-40779 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Media Encoder
Adobe Media Encoder version 15.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-119
7.8
2022-03-16 CVE-2021-40792 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Premiere PRO
Adobe Premiere Pro version 15.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-119
7.8
2022-03-16 CVE-2021-42719 Unspecified vulnerability in Adobe Bridge
Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .jpe file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe
7.8
2022-03-11 CVE-2022-23187 Classic Buffer Overflow vulnerability in Adobe Illustrator
Adobe Illustrator version 26.0.3 (and earlier) is affected by a buffer overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-120
7.8
2022-03-11 CVE-2022-24094 Out-of-bounds Write vulnerability in Adobe After Effects
Adobe After Effects versions 22.2 (and earlier) and 18.4.4 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2022-02-16 CVE-2022-23188 Unspecified vulnerability in Adobe Illustrator
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a crafted malicious file, potentially resulting in arbitrary code execution in the context of the current user.
local
low complexity
adobe
7.8
2022-02-16 CVE-2022-23202 Unspecified vulnerability in Adobe Creative Cloud Desktop Application 2.4/2.5/2.7.0.13
Adobe Creative Cloud Desktop version 2.7.0.13 (and earlier) is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user.
local
high complexity
adobe
7.0