📦 Substance 3d Painter

by Adobe

🔍 What is Substance 3d Painter?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-21305

HIGH CVSS 7.8 Jan 13, 2026

Substance3D Painter versions 11.0.3 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on a victim's system. This affects users who open mali...

CVE-2025-54187

HIGH CVSS 7.8 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds write vulnerability that could allow arbitrary code execution when a user opens a malicious file. This affects users of Adobe's...

CVE-2025-47108

HIGH CVSS 7.8 Jun 10, 2025

CVE-2025-47108 is an out-of-bounds write vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Painter ve...

CVE-2025-30322

HIGH CVSS 7.8 May 13, 2025

CVE-2025-30322 is an out-of-bounds write vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Painter ve...

CVE-2024-53957

HIGH CVSS 7.8 Dec 10, 2024

A heap-based buffer overflow vulnerability in Substance3D Painter allows attackers to execute arbitrary code when a user opens a malicious file. This affects users of Substance3D Painter versions 10.1...

CVE-2024-49519

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-49519 is an out-of-bounds write vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Painter ve...

CVE-2024-49525

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-49525 is a heap-based buffer overflow vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-49517

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-49517 is a heap-based buffer overflow vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-49515

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-49515 is an untrusted search path vulnerability in Substance3D Painter that could allow attackers to execute arbitrary code by manipulating the application's search path to load malicious pro...

CVE-2024-47431

HIGH CVSS 7.8 Nov 12, 2024

Substance3D Painter versions 10.1.0 and earlier contain a heap-based buffer overflow vulnerability that could allow attackers to execute arbitrary code on a victim's system. This affects users who ope...

CVE-2024-47433

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-47433 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-47427

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-47427 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-47429

HIGH CVSS 7.8 Nov 12, 2024

CVE-2024-47429 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-49522

HIGH CVSS 7.8 Nov 5, 2024

CVE-2024-49522 is an out-of-bounds write vulnerability in Substance3D Painter that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Painter version...

CVE-2024-30307

HIGH CVSS 7.8 May 16, 2024

Substance3D Painter versions 9.1.2 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on a victim's system. This affects users who open malic...

CVE-2024-20744

HIGH CVSS 7.8 Feb 15, 2024

Substance3D Painter versions 9.1.1 and earlier contain an out-of-bounds write vulnerability that could allow arbitrary code execution when a user opens a malicious file. This affects users of Adobe's ...

CVE-2024-20742

HIGH CVSS 7.8 Feb 15, 2024

CVE-2024-20742 is an out-of-bounds read vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with...

CVE-2024-20740

HIGH CVSS 7.8 Feb 15, 2024

CVE-2024-20740 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Pain...

CVE-2024-20723

HIGH CVSS 7.8 Feb 15, 2024

A buffer overflow vulnerability in Substance3D Painter versions 9.1.1 and earlier allows attackers to execute arbitrary code by tricking users into opening malicious files. This affects users of Adobe...

CVE-2023-29284

HIGH CVSS 7.8 May 11, 2023

This CVE describes a stack-based buffer overflow vulnerability in Adobe Substance 3D Painter that allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run ...

CVE-2023-29273

HIGH CVSS 7.8 May 11, 2023

Adobe Substance 3D Painter versions 8.3.0 and earlier contain an out-of-bounds read vulnerability when parsing malicious files. This could allow attackers to execute arbitrary code with the privileges...

CVE-2023-29275

HIGH CVSS 7.8 May 11, 2023

Adobe Substance 3D Painter has an out-of-bounds read vulnerability that could allow an attacker to execute arbitrary code on a victim's system. Users who open malicious files with affected versions (8...

CVE-2023-29278

HIGH CVSS 7.8 May 11, 2023

CVE-2023-29278 is an access of uninitialized pointer vulnerability in Adobe Substance 3D Painter that could allow arbitrary code execution when a user opens a malicious file. This affects users of Sub...

CVE-2023-29280

HIGH CVSS 7.8 May 11, 2023

Adobe Substance 3D Painter versions 8.3.0 and earlier contain an out-of-bounds read vulnerability when parsing malicious files. An attacker can exploit this to execute arbitrary code with the privileg...

CVE-2023-29282

HIGH CVSS 7.8 May 11, 2023

Adobe Substance 3D Painter versions 8.3.0 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on a victim's system. This affects users who ope...

CVE-2025-54195

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This affects users who open malicious project ...

CVE-2025-54189

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This affects users who open malicious project ...

CVE-2025-54190

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This affects users who open malicious project ...

CVE-2025-54191

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. Users who open malicious files with affected v...

CVE-2025-54192

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. Users who open malicious files with affected v...

CVE-2025-54193

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This affects users who open malicious project ...

CVE-2025-54194

MEDIUM CVSS 5.5 Aug 12, 2025

Substance3D Painter versions 11.0.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. This affects users who open malicious project ...

CVE-2024-47435

MEDIUM CVSS 5.5 Nov 12, 2024

CVE-2024-47435 is an out-of-bounds read vulnerability in Substance3D Painter that could allow an attacker to read sensitive memory contents when a victim opens a malicious file. This could potentially...

CVE-2024-47437

MEDIUM CVSS 5.5 Nov 12, 2024

Substance3D Painter versions 10.1.0 and earlier contain an out-of-bounds read vulnerability that could allow an attacker to read sensitive memory contents. This could potentially bypass security mitig...

CVE-2024-47439

MEDIUM CVSS 5.5 Nov 12, 2024

Substance3D Painter versions 10.1.0 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application by tricking users into opening malicious files. This cre...

CVE-2024-20787

MEDIUM CVSS 5.5 Oct 9, 2024

CVE-2024-20787 is an out-of-bounds read vulnerability in Substance3D Painter that could allow an attacker to read sensitive memory contents when a user opens a malicious file. This could potentially b...

CVE-2024-30309

MEDIUM CVSS 5.5 May 16, 2024

CVE-2024-30309 is an out-of-bounds read vulnerability in Substance3D Painter that could allow an attacker to read sensitive memory contents when a user opens a malicious file. This could potentially b...