| CVE-2026-71387 | 8.8 | high | adobe / coldfusion | ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution i | 25d ago |
| CVE-2026-71386 | 8.8 | high | adobe / coldfusion | is affected by a Cross-site Scripting (XSS) vulnerability that could result in arbitrary code execution in the con | 25d ago |
| CVE-2026-48307 | 8.8 | high | adobe / coldfusion | ColdFusion versions 2025.9, 2023.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabili | 67d ago |
| CVE-2026-47932 | 8.8 | high | adobe / coldfusion | ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Limitation of a Pathname to a Restrict | 88d ago |
| CVE-2026-21273 | 8.7 | high | adobe / coldfusion | is affected by an Improper Input Validation vulnerability that could result in privilege escalation. | 25d ago |
| CVE-2026-47994 | 8.7 | high | adobe / commerce | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-priv | 53d ago |
| CVE-2026-34686 | 8.7 | high | adobe / commerce | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected | 116d ago |
| CVE-2026-34653 | 8.7 | high | adobe / commerce | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected | 116d ago |
| CVE-2026-48441 | 8.6 | high | adobe / lightroom | Lightroom Classic is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | 25d ago |
| CVE-2026-48397 | 8.6 | high | adobe / lightroom | Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary | 25d ago |
| CVE-2026-48448 | 8.6 | high | adobe / campaign | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command | 37d ago |
| CVE-2026-48396 | 8.6 | high | adobe / bridge | Bridge is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in th | 39d ago |
| CVE-2026-48395 | 8.6 | high | adobe / bridge | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the | 39d ago |
| CVE-2026-48388 | 8.6 | high | adobe / photoshop installer | Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have result | 39d ago |
| CVE-2026-48275 | 8.6 | high | adobe / illustrator | Illustrator is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in | 53d ago |
| CVE-2026-48350 | 8.6 | high | adobe / animate | Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabi | 53d ago |
| CVE-2026-48310 | 8.6 | high | adobe / experience manager | Adobe Experience Manager is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Trav | 53d ago |
| CVE-2026-48252 | 8.6 | high | adobe / experience manager | Adobe Experience Manager is affected by a Missing Authentication for Critical Function vulnerability that could re | 53d ago |
| CVE-2026-47988 | 8.6 | high | adobe / commerce | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature byp | 53d ago |
| CVE-2026-48285 | 8.6 | high | adobe / coldfusion | ColdFusion versions 2025.9, 2023.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability | 67d ago |
| CVE-2026-47907 | 8.6 | high | adobe / dreamweaver | Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could | 88d ago |
| CVE-2026-47906 | 8.6 | high | adobe / dreamweaver | Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third-Party Component vul | 88d ago |
| CVE-2026-48320 | 8.5 | high | adobe / coldfusion | ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. | 53d ago |
| CVE-2026-34635 | 8.4 | high | adobe / coldfusion | is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. | 25d ago |
| CVE-2026-47931 | 8.4 | high | adobe / coldfusion | ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Input Validation vulnerability that co | 88d ago |
| CVE-2026-47929 | 8.4 | high | adobe / coldfusion | ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Incorrect Authorization vulnerability that coul | 88d ago |
| CVE-2026-21279 | 8.2 | high | adobe / coldfusion | is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. | 25d ago |
| CVE-2026-48391 | 8.2 | high | adobe / bridge | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the | 39d ago |
| CVE-2026-48390 | 8.2 | high | adobe / bridge | Bridge is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. | 39d ago |
| CVE-2026-48290 | 8.2 | high | adobe / c2pa | CAI Content Credentials is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arb | 53d ago |
| CVE-2026-48345 | 8.2 | high | adobe / animate | Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection | 53d ago |
| CVE-2026-47984 | 8.2 | high | adobe / commerce | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature byp | 53d ago |
| CVE-2026-48364 | 8.2 | high | adobe / coldfusion | ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability | 54d ago |
| CVE-2026-48363 | 8.2 | high | adobe / coldfusion | ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability | 54d ago |
| CVE-2026-48440 | 8.1 | high | adobe / coldfusion | ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution | 25d ago |
| CVE-2026-48349 | 8.1 | high | adobe / animate | Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in t | 53d ago |
| CVE-2026-47995 | 8.1 | high | adobe / commerce | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-pri | 53d ago |
| CVE-2026-47930 | 8.1 | high | adobe / coldfusion | ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Input Validation vulnerability that co | 88d ago |
| CVE-2026-34693 | 8 | high | adobe / experience manager | Adobe Experience Manager Forms JEE versions LTS SP1, 6.5.24.0 and earlier are affected by a reflected Cross-Site S | 88d ago |
| CVE-2026-48346 | 7.9 | high | adobe / animate | Animate is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the | 53d ago |
| CVE-2026-34674 | 7.8 | high | adobe / substance 3d painter | Substance3D - Sampler versions 5.1.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c | 9d ago |
| CVE-2026-75770 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by an out-of-bounds write vulnerability that could result in arbitrary code exec | 11d ago |
| CVE-2026-75769 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-75768 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by an Untrusted Search Path vulnerability that could result in arbitrary code ex | 11d ago |
| CVE-2026-75767 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-75766 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-75750 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-75749 | 7.8 | high | adobe / substance 3d painter | Substance3D - Painter is affected by an out-of-bounds write vulnerability that could result in arbitrary code exec | 11d ago |
| CVE-2026-71564 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code exe | 11d ago |
| CVE-2026-48433 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary co | 11d ago |
| CVE-2026-48432 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary co | 11d ago |
| CVE-2026-48431 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary co | 11d ago |
| CVE-2026-48430 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary co | 11d ago |
| CVE-2026-48428 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary co | 11d ago |
| CVE-2026-48427 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code exe | 11d ago |
| CVE-2026-48426 | 7.8 | high | adobe / substance 3d designer | Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code exe | 11d ago |
| CVE-2026-48425 | 7.8 | high | adobe / substance 3d sampler | Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-48424 | 7.8 | high | adobe / substance 3d sampler | Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-48423 | 7.8 | high | adobe / substance 3d sampler | Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |
| CVE-2026-48422 | 7.8 | high | adobe / substance 3d sampler | Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod | 11d ago |