Adobe Security Vulnerabilities (CVEs)

Track 1,278 security vulnerabilities affecting Adobe products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

56 Critical
708 High
512 Medium
2 Low
🔔 Get Alerts for Adobe
CVE-2024-49513 7.8

CVE-2024-49513 is an out-of-bounds write vulnerability in Adobe PDFL SDK that could allow arbitrary code execution when a user opens a malicious PDF f...

Dec 10, 2024
CVE-2024-49538 7.8

Adobe Illustrator versions 29.0.0, 28.7.2 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary cod...

Dec 10, 2024
CVE-2024-49543 7.8

A stack-based buffer overflow vulnerability in Adobe InDesign allows arbitrary code execution when a user opens a malicious file. This affects users r...

Dec 10, 2024
CVE-2024-45155 7.8

Adobe Animate versions 23.0.8, 24.0.5 and earlier contain an uninitialized pointer access vulnerability that could allow arbitrary code execution when...

Dec 10, 2024
CVE-2024-49551 7.8

Adobe Media Encoder versions 25.0, 24.6.3 and earlier contain an out-of-bounds write vulnerability that allows arbitrary code execution when a user op...

Dec 10, 2024
CVE-2024-49553 7.8

This CVE describes an out-of-bounds write vulnerability in Adobe Media Encoder that could allow arbitrary code execution when a user opens a malicious...

Dec 10, 2024
CVE-2024-49530 7.8

A use-after-free vulnerability in Adobe Acrobat Reader allows arbitrary code execution when a user opens a malicious PDF file. This affects multiple v...

Dec 10, 2024
CVE-2024-49532 5.5

Adobe Acrobat Reader has an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents, potentially bypassing ASLR ...

Dec 10, 2024
CVE-2024-49534 5.5

This CVE describes an out-of-bounds read vulnerability in Adobe Acrobat Reader that could allow an attacker to read sensitive memory contents. When ex...

Dec 10, 2024
CVE-2024-52998 5.5

CVE-2024-52998 is an out-of-bounds read vulnerability in Substance3D Stager that could allow an attacker to read sensitive memory contents when a vict...

Nov 22, 2024
CVE-2024-49536 5.5

Adobe Audition versions 23.6.9, 24.4.6 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory con...

Nov 15, 2024
CVE-2024-49509 7.8

This CVE describes a heap-based buffer overflow vulnerability in Adobe InDesign that could allow an attacker to execute arbitrary code with the privil...

Nov 12, 2024
CVE-2024-49511 5.5

Adobe InDesign has an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents when a user opens a malicious file...

Nov 12, 2024
CVE-2024-49507 7.8

This CVE describes a heap-based buffer overflow vulnerability in Adobe InDesign that could allow an attacker to execute arbitrary code on a victim's s...

Nov 12, 2024
CVE-2024-49519 7.8

CVE-2024-49519 is an out-of-bounds write vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a malicious ...

Nov 12, 2024
CVE-2024-49525 7.8

CVE-2024-49525 is a heap-based buffer overflow vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a mali...

Nov 12, 2024
CVE-2024-49515 7.8

CVE-2024-49515 is an untrusted search path vulnerability in Substance3D Painter that could allow attackers to execute arbitrary code by manipulating t...

Nov 12, 2024
CVE-2024-49517 7.8

CVE-2024-49517 is a heap-based buffer overflow vulnerability in Substance3D Painter that could allow arbitrary code execution when a user opens a mali...

Nov 12, 2024
CVE-2024-47435 5.5

CVE-2024-47435 is an out-of-bounds read vulnerability in Substance3D Painter that could allow an attacker to read sensitive memory contents when a vic...

Nov 12, 2024
CVE-2024-47437 5.5

Substance3D Painter versions 10.1.0 and earlier contain an out-of-bounds read vulnerability that could allow an attacker to read sensitive memory cont...

Nov 12, 2024
CVE-2024-47439 5.5

Substance3D Painter versions 10.1.0 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application by tri...

Nov 12, 2024
CVE-2024-47431 7.8

Substance3D Painter versions 10.1.0 and earlier contain a heap-based buffer overflow vulnerability that could allow attackers to execute arbitrary cod...

Nov 12, 2024
CVE-2024-47433 7.8

CVE-2024-47433 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a mali...

Nov 12, 2024
CVE-2024-47427 7.8

CVE-2024-47427 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a mali...

Nov 12, 2024
CVE-2024-47429 7.8

CVE-2024-47429 is an out-of-bounds write vulnerability in Adobe Substance3D Painter that could allow arbitrary code execution when a user opens a mali...

Nov 12, 2024
CVE-2024-47456 5.5

Adobe Illustrator versions 28.7.1 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents...

Nov 12, 2024
CVE-2024-47458 5.5

Adobe Bridge versions 13.0.9, 14.1.2 and earlier contain a NULL pointer dereference vulnerability that allows attackers to cause denial-of-service by ...

Nov 12, 2024
CVE-2024-47452 7.8

Adobe Illustrator versions 28.7.1 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code when a...

Nov 12, 2024
CVE-2024-47454 5.5

Adobe Illustrator versions 28.7.1 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory contents...

Nov 12, 2024
CVE-2024-47445 5.5

CVE-2024-47445 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to read sensitive memory contents. This coul...

Nov 12, 2024
CVE-2024-47449 5.5

This CVE describes an out-of-bounds read vulnerability in Adobe Audition that could allow an attacker to read sensitive memory contents. When exploite...

Nov 12, 2024
CVE-2024-47450 7.8

Adobe Illustrator versions 28.7.1 and earlier contain a heap-based buffer overflow vulnerability that could allow arbitrary code execution when a user...

Nov 12, 2024
CVE-2024-45147 5.5

CVE-2024-45147 is an out-of-bounds read vulnerability in Adobe Bridge that could allow an attacker to read sensitive memory, potentially bypassing ASL...

Nov 12, 2024
CVE-2024-47441 7.8

CVE-2024-47441 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious ...

Nov 12, 2024
CVE-2024-47443 7.8

CVE-2024-47443 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious ...

Nov 12, 2024
CVE-2024-49527 5.5

Adobe Animate versions 23.0.7, 24.0.4 and earlier contain an out-of-bounds read vulnerability that could allow attackers to read sensitive memory cont...

Nov 12, 2024
CVE-2024-49528 7.8

Adobe Animate versions 23.0.7, 24.0.4 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on...

Nov 12, 2024
CVE-2024-49521 7.7

Adobe Commerce versions 3.2.5 and earlier contain a Server-Side Request Forgery (SSRF) vulnerability that allows low-privileged attackers to send craf...

Nov 12, 2024
CVE-2024-49523 5.4

Adobe Experience Manager versions 6.5.20 and earlier contain a stored Cross-Site Scripting (XSS) vulnerability where attackers can inject malicious sc...

Nov 7, 2024
CVE-2024-49522 7.8

CVE-2024-49522 is an out-of-bounds write vulnerability in Substance3D Painter that allows arbitrary code execution when a user opens a malicious file....

Nov 5, 2024
CVE-2024-47459 5.5

CVE-2024-47459 is a NULL pointer dereference vulnerability in Substance3D Sampler that allows attackers to cause a denial-of-service by crashing the a...

Oct 17, 2024
CVE-2024-45132 6.5

CVE-2024-45132 is an improper authorization vulnerability in Adobe Commerce that allows low-privileged attackers to bypass security controls and escal...

Oct 10, 2024
CVE-2024-45148 8.8

CVE-2024-45148 is an improper authentication vulnerability in Adobe Commerce that allows low-privileged attackers to bypass security features and gain...

Oct 10, 2024
CVE-2024-45128 5.4

This CVE describes an Improper Authorization vulnerability in Adobe Commerce that allows low-privileged attackers to bypass security measures. The vul...

Oct 10, 2024
CVE-2024-45130 4.3

This CVE describes an Improper Access Control vulnerability in Adobe Commerce that allows low-privileged attackers to bypass security measures. Affect...

Oct 10, 2024
CVE-2024-45123 6.1

This reflected Cross-Site Scripting (XSS) vulnerability in Adobe Commerce allows attackers to execute malicious JavaScript in victims' browsers by tri...

Oct 10, 2024
CVE-2024-45125 4.3

Adobe Commerce has an incorrect authorization vulnerability that allows low-privileged attackers to bypass security features and potentially modify da...

Oct 10, 2024
CVE-2024-45117 7.6

This CVE describes an Improper Input Validation vulnerability in Adobe Commerce that allows authenticated admin attackers to read arbitrary files from...

Oct 10, 2024
CVE-2024-45119 4.9

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Adobe Commerce that allows authenticated administrators to force the applicat...

Oct 10, 2024
CVE-2024-45121 4.3

CVE-2024-45121 is an Improper Access Control vulnerability in Adobe Commerce that allows low-privileged attackers to bypass security features. This af...

Oct 10, 2024

Why Monitor Adobe Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 1,278+ known vulnerabilities affecting Adobe products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Adobe packages in under 60 seconds. No agents required - completely agentless scanning that works across Adobe deployments.

Free vulnerability database: Access detailed information about every Adobe CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Adobe CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Adobe CVEs Free