📦 Substance 3d Stager

by Adobe

🔍 What is Substance 3d Stager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-21345

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21345 is an out-of-bounds read vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versi...

CVE-2026-21343

HIGH CVSS 7.8 Feb 10, 2026

Substance3D Stager versions 3.1.6 and earlier contain an out-of-bounds read vulnerability when parsing malicious files. An attacker could exploit this to execute arbitrary code with the privileges of ...

CVE-2026-21341

HIGH CVSS 7.8 Feb 10, 2026

CVE-2026-21341 is an out-of-bounds write vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager vers...

CVE-2026-21287

HIGH CVSS 7.8 Jan 13, 2026

CVE-2026-21287 is a use-after-free vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects all users running version 3.1.5 or earlier ...

CVE-2025-64531

HIGH CVSS 7.8 Nov 11, 2025

A use-after-free vulnerability in Substance3D Stager versions 3.1.5 and earlier allows attackers to execute arbitrary code when a user opens a malicious file. This affects all users running vulnerable...

CVE-2025-61833

HIGH CVSS 7.8 Nov 11, 2025

CVE-2025-61833 is an out-of-bounds read vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with ...

CVE-2025-61834

HIGH CVSS 7.8 Nov 11, 2025

CVE-2025-61834 is a use-after-free vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versions 3...

CVE-2025-61835

HIGH CVSS 7.8 Nov 11, 2025

Substance3D Stager versions 3.1.5 and earlier contain an integer underflow vulnerability that could allow arbitrary code execution when a user opens a malicious file. This affects users of Adobe's Sub...

CVE-2025-61805

HIGH CVSS 7.8 Oct 14, 2025

CVE-2025-61805 is an out-of-bounds read vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with ...

CVE-2025-61807

HIGH CVSS 7.8 Oct 14, 2025

CVE-2025-61807 is an integer overflow vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager version 3.1....

CVE-2025-61802

HIGH CVSS 7.8 Oct 14, 2025

CVE-2025-61802 is a use-after-free vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versions 3...

CVE-2025-61803

HIGH CVSS 7.8 Oct 14, 2025

CVE-2025-61803 is an integer overflow vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versions 3.1...

CVE-2025-54262

HIGH CVSS 7.8 Sep 16, 2025

Substance3D Stager versions 3.1.3 and earlier contain an out-of-bounds read vulnerability when parsing malicious files. This could allow an attacker to execute arbitrary code with the privileges of th...

CVE-2025-43571

HIGH CVSS 7.8 May 13, 2025

CVE-2025-43571 is a use-after-free vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versions 3...

CVE-2025-43569

HIGH CVSS 7.8 May 13, 2025

CVE-2025-43569 is an out-of-bounds write vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects all users running Substance3D Stager ...

CVE-2025-21132

HIGH CVSS 7.8 Jan 14, 2025

CVE-2025-21132 is an out-of-bounds write vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager vers...

CVE-2025-21128

HIGH CVSS 7.8 Jan 14, 2025

CVE-2025-21128 is a stack-based buffer overflow vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. Attackers can gain full control of the affe...

CVE-2025-21129

HIGH CVSS 7.8 Jan 14, 2025

A heap-based buffer overflow vulnerability in Substance3D Stager versions 3.0.4 and earlier allows attackers to execute arbitrary code with the privileges of the current user. This requires the victim...

CVE-2025-21130

HIGH CVSS 7.8 Jan 14, 2025

CVE-2025-21130 is an out-of-bounds write vulnerability in Adobe Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager ver...

CVE-2025-21131

HIGH CVSS 7.8 Jan 14, 2025

CVE-2025-21131 is an out-of-bounds write vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager vers...

CVE-2024-45152

HIGH CVSS 7.8 Oct 9, 2024

CVE-2024-45152 is an out-of-bounds write vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager versions ...

CVE-2024-45141

HIGH CVSS 7.8 Oct 9, 2024

CVE-2024-45141 is an out-of-bounds write vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager vers...

CVE-2024-45143

HIGH CVSS 7.8 Oct 9, 2024

CVE-2024-45143 is a heap-based buffer overflow vulnerability in Adobe Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D...

CVE-2024-45139

HIGH CVSS 7.8 Oct 9, 2024

CVE-2024-45139 is a heap-based buffer overflow vulnerability in Adobe Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stag...

CVE-2024-39388

HIGH CVSS 7.8 Aug 14, 2024

CVE-2024-39388 is a use-after-free vulnerability in Adobe Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stager vers...

CVE-2024-34115

HIGH CVSS 7.8 Jun 13, 2024

CVE-2024-34115 is an out-of-bounds write vulnerability in Adobe Substance3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance3D Stage...

CVE-2023-26392

HIGH CVSS 7.8 Apr 12, 2023

CVE-2023-26392 is a use-after-free vulnerability in Adobe Substance 3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance 3D Stager version...

CVE-2023-26394

HIGH CVSS 7.8 Apr 12, 2023

Adobe Substance 3D Stager versions 2.0.1 and earlier contain a heap-based buffer overflow vulnerability that could allow attackers to execute arbitrary code with the privileges of the current user. Th...

CVE-2023-26388

HIGH CVSS 7.8 Apr 12, 2023

Adobe Substance 3D Stager versions 2.0.1 and earlier contain an improper input validation vulnerability that allows arbitrary code execution when a user opens a malicious file. This affects users of A...

CVE-2023-26390

HIGH CVSS 7.8 Apr 12, 2023

Adobe Substance 3D Stager versions 2.0.1 and earlier contain a stack-based buffer overflow vulnerability that allows arbitrary code execution when a user opens a malicious file. This affects users of ...

CVE-2023-26383

HIGH CVSS 7.8 Apr 12, 2023

CVE-2023-26383 is a stack-based buffer overflow vulnerability in Adobe Substance 3D Stager that allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run co...

CVE-2023-25863

HIGH CVSS 7.8 Mar 27, 2023

Adobe Substance 3D Stager has an out-of-bounds read vulnerability when parsing malicious files, which could allow attackers to execute arbitrary code as the current user. This affects users who open c...

CVE-2023-25865

HIGH CVSS 7.8 Mar 27, 2023

CVE-2023-25865 is an improper input validation vulnerability in Adobe Substance 3D Stager that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance 3D St...

CVE-2023-25867

HIGH CVSS 7.8 Mar 27, 2023

Adobe Substance 3D Stager has an improper input validation vulnerability that allows arbitrary code execution when a user opens a malicious file. This affects users of Substance 3D Stager version 2.0....

CVE-2023-25869

HIGH CVSS 7.8 Mar 27, 2023

Adobe Substance 3D Stager has an out-of-bounds read vulnerability that could allow arbitrary code execution when a user opens a malicious file. Attackers could exploit this to run code with the victim...

CVE-2023-25871

HIGH CVSS 7.8 Mar 27, 2023

CVE-2023-25871 is a use-after-free vulnerability in Adobe Substance 3D Stager that could allow arbitrary code execution when a user opens a malicious file. This affects users of Substance 3D Stager ve...

CVE-2023-25873

HIGH CVSS 7.8 Mar 27, 2023

Adobe Substance 3D Stager has an out-of-bounds read vulnerability when parsing malicious files, which could allow attackers to execute arbitrary code as the current user. Users who open crafted files ...

CVE-2025-54237

MEDIUM CVSS 5.5 Sep 16, 2025

Substance3D Stager versions 3.1.3 and earlier contain an out-of-bounds read vulnerability that could allow memory exposure when processing malicious files. Attackers could exploit this to disclose sen...

CVE-2025-27165

MEDIUM CVSS 5.5 Jul 8, 2025

Substance3D Stager versions 3.1.2 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents. Users who open malicious files with affected sof...

CVE-2025-43551

MEDIUM CVSS 5.5 May 13, 2025

Substance3D Stager versions 3.1.1 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents and potentially bypass ASLR protections. Users wh...

CVE-2024-52998

MEDIUM CVSS 5.5 Nov 22, 2024

CVE-2024-52998 is an out-of-bounds read vulnerability in Substance3D Stager that could allow an attacker to read sensitive memory contents when a victim opens a malicious file. This could potentially ...

CVE-2023-25877

MEDIUM CVSS 5.5 Mar 27, 2023

Adobe Substance 3D Stager versions 2.0.0 and earlier contain an out-of-bounds read vulnerability that could allow an attacker to read sensitive memory information, potentially bypassing ASLR protectio...

CVE-2023-25875

MEDIUM CVSS 5.5 Mar 27, 2023

Adobe Substance 3D Stager versions 2.0.0 and earlier contain an out-of-bounds read vulnerability that could allow an attacker to read sensitive memory information, potentially bypassing security mitig...