Vulnerability index

Browse CVEs

6,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Experience Manager MEDIUM 5.4
CVE-2026-34624

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could …

Fix: 6.5.11.8+
Fix from $1,600 2026-04-14
Experience Manager MEDIUM 5.4
CVE-2026-34625

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could …

Fix: 6.5.11.8+
Fix from $1,600 2026-04-14
Experience Manager MEDIUM 5.4
CVE-2026-34623

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could …

Fix: 6.5.11.8+
Fix from $1,600 2026-04-14
Indesign HIGH 7.8
CVE-2026-34628

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Indesign HIGH 7.8
CVE-2026-34629

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Connect CRITICAL 9.3
CVE-2026-34615

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary cod…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect HIGH 8.7
CVE-2026-34617

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Cross-Site Scripting (XSS) vulnerability that could result in privilege escalation…

Fix: 12.11 / 2025.9.15+
Fix from $1,950 2026-04-14
Indesign HIGH 7.8
CVE-2026-34627

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Connect MEDIUM 6.1
CVE-2026-34614

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to conv…

Fix: 12.11 / 2025.9.15+
Fix from $1,600 2026-04-14
Connect CRITICAL 9.6
CVE-2026-27303

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary cod…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27246

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Dng Software Development Kit MEDIUM 5.5
CVE-2026-27258

DNG SDK versions 1.7.1 2502 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An att…

Fix: after 1.7.1
Fix from $1,600 2026-04-14
Experience Manager MEDIUM 5.4
CVE-2026-27288

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could …

Fix: 6.5.11.8+
Fix from $1,600 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27243

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27245

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect MEDIUM 6.1
CVE-2026-21331

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to conv…

Fix: 12.11 / 2025.9.15+
Fix from $1,600 2026-04-14
Acrobat HIGH 8.6
CVE-2026-34622

Acrobat Reader versions 26.001.21411, 24.001.30360, 24.001.30362 and earlier are affected by an Improperly Controlled Modification of Object Prototyp…

Fix: 24.001.30365 / 26.001.21431+
Fix from $1,950 2026-04-14
Acrobat MEDIUM 6.3
CVE-2026-34626

Acrobat Reader versions 26.001.21411, 24.001.30360, 24.001.30362 and earlier are affected by an Improperly Controlled Modification of Object Prototyp…

Fix: 24.001.30365 / 26.001.21431+
Fix from $1,600 2026-04-14
Indesign HIGH 7.8
CVE-2026-27284

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could resul…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Indesign HIGH 7.8
CVE-2026-27291

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Indesign MEDIUM 5.5
CVE-2026-27285

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to application denial-o…

Fix: 20.5.3 / 21.3+
Fix from $1,600 2026-04-14
Indesign MEDIUM 5.5
CVE-2026-27286

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An …

Fix: 20.5.3+
Fix from $1,600 2026-04-14
Indesign HIGH 7.8
CVE-2026-27238

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Indesign HIGH 7.8
CVE-2026-27283

InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in th…

Fix: 20.5.3 / 21.3+
Fix from $1,950 2026-04-14
Acrobat Dc HIGH 8.6
CVE-2026-34621 KEVEPSS 7%

Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes (…

Fix: 24.001.30360 / 24.001.30362+
Fix from $1,950 2026-04-11
Substance 3d Stager HIGH 7.8
CVE-2026-27309

Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.8+
Fix from $1,950 2026-03-27
Commerce HIGH 8.1
CVE-2026-21361

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a stored Cross-Site Scripting (…

Fix: 1.3.3 / 2.4.4+
Fix from $1,950 2026-03-11
Commerce HIGH 8.0
CVE-2026-21311

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a stored Cross-Site Scripting (…

Fix: 1.3.3 / 2.4.4+
Fix from $1,950 2026-03-11
Commerce HIGH 7.5
CVE-2026-21309

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Incorrect Authorization vuln…

Fix: 1.3.3 / 2.4.4+
Fix from $1,950 2026-03-11
Commerce MEDIUM 6.8
CVE-2026-21360

Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an Improper Limitation of a Pat…

Fix: 1.3.3 / 2.4.4+
Fix from $1,600 2026-03-11