Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4340

Browse all 4340 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE IDTitleCVSSSeverityPublished
CVE-2022-42351 AEM Incorrect Authorization Security feature bypass — Experience ManagerCWE-863 4.3 Medium2022-12-19
CVE-2022-42360 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-12-19
CVE-2022-44462 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-12-19
CVE-2022-44498 Adobe Illustrator Out-of-Bound Read Memory leak — IllustratorCWE-125 5.5 Medium2022-12-19
CVE-2022-44499 Adobe Illustrator Out-of-Bound Read Memory leak — IllustratorCWE-125 5.5 Medium2022-12-19
CVE-2022-44500 Adobe Illustrator Out-of-Bound Read Memory leak — IllustratorCWE-125 5.5 Medium2022-12-19
CVE-2022-44502 Adobe Illustrator Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — IllustratorCWE-125 5.5 Medium2022-12-19
CVE-2022-38435 Adobe Illustrator PCX File Parsing Memory Corruption Remote Code Execution Vulnerability — IllustratorCWE-20 7.8 High2022-10-25
CVE-2022-38436 Adobe Illustrator CDR File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — IllustratorCWE-125 7.8 High2022-10-25
CVE-2022-42344 [CVE-2021-36032] Magento IDOR Leads to Account Takeover — Adobe CommerceCWE-863 8.8 High2022-10-20
CVE-2022-38444 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38448 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38442 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38443 Adobe Dimension GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — DimensionCWE-125 5.5 Medium2022-10-14
CVE-2022-38446 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38441 Adobe Dimension GLB File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — DimensionCWE-125 7.8 High2022-10-14
CVE-2022-38445 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38447 Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability — DimensionCWE-416 7.8 High2022-10-14
CVE-2022-38440 Adobe Dimension SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — DimensionCWE-125 7.8 High2022-10-14
CVE-2022-35689 Adobe Commerce Improper Access Control Security feature bypass — Magento CommerceCWE-284 5.3 Medium2022-10-14
CVE-2022-35698 Adobe Commerce Stored XSS Arbitrary code execution — Magento CommerceCWE-79 10.0 Critical2022-10-14
CVE-2022-38437 Adobe Acrobat Reader Use After Free Memory leak — Acrobat ReaderCWE-416 5.5 Medium2022-10-14
CVE-2022-38449 Adobe Acrobat Reader DC JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Acrobat ReaderCWE-125 5.5 Medium2022-10-14
CVE-2022-35691 Adobe Acrobat Reader NULL Pointer Dereference Application denial-of-service — Acrobat ReaderCWE-476 5.5 Medium2022-10-14
CVE-2022-38450 Adobe Acrobat Reader DC XFA Parsing Stack Overflow Remote Code Execution Vulnerability — Acrobat ReaderCWE-121 7.8 High2022-10-14
CVE-2022-42339 Adobe Acrobat Reader DC XFA Parsing Stack Overflow Remote Code Execution — Acrobat ReaderCWE-121 7.8 High2022-10-14
CVE-2022-42342 Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — Acrobat ReaderCWE-125 5.5 Medium2022-10-14
CVE-2022-38424 Adobe ColdFusion Application Server Directory Traversal Arbitrary file system write — ColdFusionCWE-22 7.2 High2022-10-14
CVE-2022-42340 Adobe ColdFusion Improper Input Validation Arbitrary file system read — ColdFusionCWE-20 7.5 High2022-10-14
CVE-2022-42341 Adobe ColdFusion Improper Restriction of XML External Entity Reference Arbitrary file system read — ColdFusionCWE-611 7.5 High2022-10-14

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.