Vulnerability index

Browse CVEs

55 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Coldfusion CRITICAL 10.0
CVE-2026-48282 KEVEPSS 99%

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vul…

Mitigation only
Fix from $2,300 2026-06-30
Acrobat Dc HIGH 8.6
CVE-2026-34621 KEVEPSS 7%

Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes (…

Fix: 24.001.30360 / 24.001.30362+
Fix from $1,950 2026-04-11
Commerce CRITICAL 9.1
CVE-2025-54236 KEVEPSS 95%

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Improper Input Validation vu…

Mitigation only
Fix from $2,300 2025-09-09
Experience Manager Forms CRITICAL 10.0
CVE-2025-54253 KEVEPSS 88%

Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result in arbitrary code execution. …

Fix: after 6.5.23.0
Fix from $2,300 2025-08-05
Commerce CRITICAL 9.8
CVE-2024-34102 KEVEPSS 100%

Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XX…

Fix: 1.5.0+
Fix from $2,300 2024-06-13
Coldfusion HIGH 7.4
CVE-2024-20767 KEVEPSS 99%

ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file system r…

Mitigation only
Fix from $1,950 2024-03-18
Coldfusion HIGH 7.5
CVE-2023-38205 KEVEPSS 100%

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerabili…

Mitigation only
Fix from $1,950 2023-09-14
Acrobat HIGH 7.8
CVE-2023-26369 KEVEPSS 7%

Acrobat Reader versions 23.003.20284 (and earlier), 20.005.30516 (and earlier) and 20.005.30514 (and earlier) are affected by an out-of-bounds write …

Fix: 20.005.30524 / 23.006.20320+
Fix from $1,950 2023-09-13
Coldfusion CRITICAL 9.8
CVE-2023-38203 KEVEPSS 97%

Adobe ColdFusion versions 2018u17 (and earlier), 2021u7 (and earlier) and 2023u1 (and earlier) are affected by a Deserialization of Untrusted Data vu…

Patch available
Fix from $2,300 2023-07-20
Coldfusion CRITICAL 9.8
CVE-2023-29300 KEVEPSS 100%

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by a Deserialization of Untruste…

Mitigation only
Fix from $2,300 2023-07-12
Coldfusion HIGH 7.5
CVE-2023-29298 KEVEPSS 100%

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by an Improper Access Control vu…

Mitigation only
Fix from $1,950 2023-07-12
Coldfusion CRITICAL 9.8
CVE-2023-26359 KEVEPSS 18%

Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by a Deserialization of Untrusted Data vulnerabil…

Patch available
Fix from $2,300 2023-03-23
Coldfusion HIGH 8.6
CVE-2023-26360 KEVEPSS 97%

Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by an Improper Access Control vulnerability that …

Patch available
Fix from $1,950 2023-03-23
Acrobat Dc HIGH 7.8
CVE-2023-21608 KEVEPSS 61%

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by a Use After Free …

Fix: after 22.003.20282
Fix from $1,950 2023-01-18
Commerce CRITICAL 9.8
CVE-2022-24086 KEVEPSS 99%

Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the check…

Fix: 2.3.0+
Fix from $2,300 2022-02-16
Acrobat Dc HIGH 8.8
CVE-2021-28550 KEVEPSS 52%

Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use…

Fix: after 21.001.20150
Fix from $1,950 2021-09-02
Acrobat HIGH 8.8
CVE-2021-21017 KEVEPSS 86%

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a hea…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat Dc HIGH 7.8
CVE-2020-9715 KEVEPSS 48%

Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have an use-…

Fix: after 20.009.20074
Fix from $1,950 2020-08-19
Coldfusion CRITICAL 9.8
CVE-2018-15961 KEVEPSS 100%

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file upload vulnera…

Mitigation only
Fix from $2,300 2018-09-25
Acrobat Dc HIGH 8.8
CVE-2018-4990 KEVEPSS 37%

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free vulnerabi…

Fix: after 18.011.20038
Fix from $1,950 2018-07-09
Coldfusion CRITICAL 9.8
CVE-2018-4939 KEVEPSS 63%

Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Deserialization of Untrusted Data vu…

Mitigation only
Fix from $2,300 2018-05-19
Coldfusion CRITICAL 9.8
CVE-2017-3066 KEVEPSS 91%

Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier have a Java deserialization vuln…

Patch available
Fix from $2,300 2017-04-27
Flash Player Desktop Runtime HIGH 8.8
CVE-2016-7892 KEVEPSS 19%

Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the TextField class.…

Fix: after 23.0.0.207
Fix from $1,950 2016-12-15
Flash Player Desktop Runtime CRITICAL 9.8
CVE-2016-1019 KEVEPSS 22%

Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code…

Fix: after 21.0.0.197
Fix from $2,300 2016-04-07
Flash Player HIGH 8.8
CVE-2016-1010 KEVEPSS 20%

Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux…

Fix: after 20.2.2.306
Fix from $1,950 2016-03-12
Flash Player HIGH 8.8
CVE-2016-0984 KEVEPSS 55%

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 …

Fix: after 20.0.0.286
Fix from $1,950 2016-02-10
Flash Player CRITICAL 9.8
CVE-2015-0313 KEVEPSS 96%

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.…

Fix: 11.2.202.442 / 13.0.0.269+
Fix from $2,300 2015-02-02
Flash Player CRITICAL 9.8
CVE-2015-0311 KEVEPSS 86%

Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.2…

Fix: 16.0.0.287+
Fix from $2,300 2015-01-23
Flash Player HIGH 7.8
CVE-2015-0310 KEVEPSS 15%

Adobe Flash Player before 13.0.0.262 and 14.x through 16.x before 16.0.0.287 on Windows and OS X and before 11.2.202.438 on Linux does not properly r…

Fix: 11.2.202.438 / 13.0.0.262+
Fix from $1,950 2015-01-23
Flash Player HIGH 7.8
CVE-2014-9163 KEVEPSS 20%

Stack-based buffer overflow in Adobe Flash Player before 13.0.0.259 and 14.x and 15.x before 15.0.0.246 on Windows and OS X and before 11.2.202.425 o…

Fix: 11.2.202.425 / 13.0.0.259+
Fix from $1,950 2014-12-10