📦 After Effects

by Adobe

🔍 What is After Effects?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-21351

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim's system when they open a malicious file. This aff...

CVE-2026-21324

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21324 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to execute arbitrary code in the context of the current user. This affects users of After Effe...

CVE-2026-21325

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21325 is an out-of-bounds read vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with...

CVE-2026-21326

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim's system when they open a malicious file. This aff...

CVE-2026-21328

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on a victim's system. This requires user interaction whe...

CVE-2026-21329

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21329 is a use-after-free vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects users of After Effects versions 25.6 ...

CVE-2026-21330

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a type confusion vulnerability that could allow arbitrary code execution when a user opens a malicious file. This affects users running vulnerable...

CVE-2026-21318

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21318 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects After Effects 25.6 and earlier ...

CVE-2026-21320

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow an attacker to execute arbitrary code on a victim's system. This requires the user to open a malic...

CVE-2026-21322

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21322 is an out-of-bounds read vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects After Effects versions 25.6 and ...

CVE-2026-21323

HIGH CVSS 7.8 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim's system. This requires the user to open a malicio...

CVE-2025-27182

HIGH CVSS 7.8 Apr 8, 2025

CVE-2025-27182 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects users of After Effects versions...

CVE-2024-47441

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-47441 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects users of After Effects versions...

CVE-2024-47443

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-47443 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects users running vulnerable versio...

CVE-2024-39381

HIGH CVSS 7.8 Sep 13, 2024

CVE-2024-39381 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. This affects users running After Effects ver...

CVE-2023-48634

HIGH CVSS 7.8 Dec 13, 2023

Adobe After Effects has an improper input validation vulnerability that allows arbitrary code execution when a user opens a malicious file. This affects users running vulnerable versions of Adobe Afte...

CVE-2023-48632

HIGH CVSS 7.8 Dec 13, 2023

Adobe After Effects has an out-of-bounds write vulnerability that allows attackers to execute arbitrary code when a user opens a malicious file. This affects users running After Effects versions 24.0....

CVE-2023-47073

HIGH CVSS 7.8 Nov 17, 2023

Adobe After Effects versions 24.0.2 and earlier, and 23.6 and earlier, contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code with the privileges of the curr...

CVE-2023-47070

HIGH CVSS 7.8 Nov 17, 2023

Adobe After Effects versions 24.0.2 and earlier, and 23.6 and earlier, contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code with the privileges of the curr...

CVE-2023-47066

HIGH CVSS 7.8 Nov 17, 2023

Adobe After Effects versions 24.0.2 and earlier, and 23.6 and earlier, contain an out-of-bounds read vulnerability when parsing malicious files. This could allow an attacker to execute arbitrary code ...

CVE-2023-47068

HIGH CVSS 7.8 Nov 17, 2023

Adobe After Effects has an out-of-bounds read vulnerability that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with the victim's pri...

CVE-2023-22239

HIGH CVSS 7.8 Feb 17, 2023

CVE-2023-22239 is an improper input validation vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a malicious file. This affects users of After Effects version...

CVE-2023-22237

HIGH CVSS 7.8 Feb 17, 2023

This CVE describes an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. Attackers could gain full control of the af...

CVE-2021-43755

HIGH CVSS 7.8 Jun 15, 2022

This CVE describes an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. Attackers could gain the same privileges as...

CVE-2022-27784

HIGH CVSS 7.8 May 6, 2022

CVE-2022-27784 is a stack overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a maliciously crafted file. Attackers can exploit this to run code with t...

CVE-2022-24096

HIGH CVSS 7.8 Mar 11, 2022

CVE-2022-24096 is a heap-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run code with...

CVE-2022-24094

HIGH CVSS 7.8 Mar 11, 2022

CVE-2022-24094 is a stack-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run code wit...

CVE-2022-23200

HIGH CVSS 7.8 Feb 16, 2022

This CVE describes an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. Attackers could gain the same privileges as...

CVE-2021-40759

HIGH CVSS 7.8 Nov 18, 2021

Adobe After Effects versions 18.4.1 and earlier contain a memory corruption vulnerability when processing malicious .m4a files. This could allow attackers to execute arbitrary code with the privileges...

CVE-2021-40754

HIGH CVSS 7.8 Nov 18, 2021

This vulnerability allows attackers to execute arbitrary code on systems running vulnerable versions of Adobe After Effects. Attackers can achieve this by tricking users into opening malicious WAV fil...

CVE-2021-40757

HIGH CVSS 7.8 Nov 18, 2021

This vulnerability allows attackers to execute arbitrary code on systems running vulnerable versions of Adobe After Effects by tricking users into opening malicious MXF files. The vulnerability affect...

CVE-2021-40752

HIGH CVSS 7.8 Nov 18, 2021

Adobe After Effects versions 18.4 and earlier contain a memory corruption vulnerability when processing malicious .m4a files. This could allow attackers to execute arbitrary code with the privileges o...

CVE-2021-28571

HIGH CVSS 8.3 Sep 8, 2021

CVE-2021-28571 is a command injection vulnerability in Adobe After Effects that allows arbitrary code execution when chained with JavaScript debugging tools. Attackers can exploit this by tricking use...

CVE-2021-35993

HIGH CVSS 7.8 Sep 2, 2021

Adobe After Effects versions 18.2.1 and earlier contain an out-of-bounds write vulnerability when parsing malicious files. An attacker can achieve arbitrary code execution with the victim's privileges...

CVE-2021-35996

HIGH CVSS 7.8 Sep 2, 2021

Adobe After Effects versions 18.2.1 and earlier contain a memory corruption vulnerability when parsing malicious files. An attacker can achieve arbitrary code execution with the victim's privileges by...

CVE-2021-28610

HIGH CVSS 7.8 Aug 24, 2021

CVE-2021-28610 is a heap-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run code with...

CVE-2021-28602

HIGH CVSS 7.8 Aug 24, 2021

Adobe After Effects versions 18.2 and earlier contain a memory corruption vulnerability (CWE-787) that allows arbitrary code execution when a user opens a malicious file. This affects users of Adobe A...

CVE-2021-28604

HIGH CVSS 7.8 Aug 24, 2021

Adobe After Effects versions 18.2 and earlier contain a heap-based buffer overflow vulnerability when parsing malicious files. An attacker can exploit this to execute arbitrary code with the victim's ...

CVE-2021-28606

HIGH CVSS 7.8 Aug 24, 2021

Adobe After Effects versions 18.2 and earlier contain a stack-based buffer overflow vulnerability when parsing malicious files. An attacker can exploit this to execute arbitrary code with the victim's...

CVE-2021-28608

HIGH CVSS 7.8 Aug 24, 2021

CVE-2021-28608 is a heap-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a malicious file is opened. Attackers can exploit this to run code with th...

CVE-2026-21350

MEDIUM CVSS 5.5 Feb 10, 2026

Adobe After Effects versions 25.6 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application by tricking users into opening malicious files. This cause...

CVE-2025-54240

MEDIUM CVSS 5.5 Sep 9, 2025

CVE-2025-54240 is an out-of-bounds read vulnerability in Adobe After Effects that could expose memory contents and potentially disclose sensitive information when a user opens a malicious file. This a...

CVE-2025-54241

MEDIUM CVSS 5.5 Sep 9, 2025

Adobe After Effects versions 25.3, 24.6.7 and earlier contain an out-of-bounds read vulnerability that could expose memory contents, potentially leaking sensitive information. Attackers can exploit th...

CVE-2025-54239

MEDIUM CVSS 5.5 Sep 9, 2025

Adobe After Effects versions 25.3, 24.6.7 and earlier contain an out-of-bounds read vulnerability that could allow memory exposure and disclosure of sensitive information when a user opens a malicious...

CVE-2025-43587

MEDIUM CVSS 5.5 Jul 8, 2025

This CVE describes an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to read sensitive memory contents. Successful exploitation requires a victim to open a malici...

CVE-2025-27184

MEDIUM CVSS 5.5 Apr 8, 2025

CVE-2025-27184 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to read sensitive memory contents. This could potentially bypass security mitigations like ASL...

CVE-2025-27186

MEDIUM CVSS 5.5 Apr 8, 2025

Adobe After Effects versions 25.1, 24.6.4 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This could potentially bypass security m...

CVE-2024-47445

MEDIUM CVSS 5.5 Nov 12, 2024

CVE-2024-47445 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to read sensitive memory contents. This could potentially bypass security mitigations like ASL...

CVE-2024-41867

MEDIUM CVSS 5.5 Sep 13, 2024

CVE-2024-41867 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to read sensitive memory contents. This could potentially bypass security mitigations like ASL...