Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4340

Browse all 4340 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE IDTitleCVSSSeverityPublished
CVE-2022-38419 Adobe ColdFusion Solr Service XML External Entity Processing Arbitrary file system read — ColdFusionCWE-611 7.5 High2022-10-14
CVE-2022-38421 Adobe ColdFusion Application Server Directory Traversal Remote Code Execution Vulnerability — ColdFusionCWE-22 7.2 High2022-10-14
CVE-2022-38422 Adobe ColdFusion Application Server Directory Traversal Information Disclosure Vulnerability — ColdFusionCWE-22 7.5 High2022-10-14
CVE-2022-38423 Adobe ColdFusion Application Server Directory Traversal Information Disclosure Vulnerability — ColdFusionCWE-22 4.9 Medium2022-10-14
CVE-2022-35690 Adobe ColdFusion ODBC Agent Stack-based Buffer Overflow Remote Code Execution Vulnerability — ColdFusionCWE-121 9.8 Critical2022-10-14
CVE-2022-35711 Adobe ColdFusion ODBC Server Heap-based Buffer Overflow Remote Code Execution Vulnerability — ColdFusionCWE-122 9.8 Critical2022-10-14
CVE-2022-35712 Adobe ColdFusion ODBC Agent Heap-based Buffer Overflow Remote Code Execution Vulnerability — ColdFusionCWE-122 9.8 Critical2022-10-14
CVE-2022-38420 Adobe ColdFusion Use of Hard-coded Credentials Application denial-of-service — ColdFusionCWE-798 7.5 High2022-10-14
CVE-2022-35710 Adobe ColdFusion ODBC Server Stack-based Buffer Overflow Remote Code Execution Vulnerability — ColdFusionCWE-121 9.8 Critical2022-10-14
CVE-2022-38418 Adobe ColdFusion Application Server Directory Traversal Remote Code Execution Vulnerability — ColdFusionCWE-22 9.8 Critical2022-10-14
CVE-2022-28851 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-30
CVE-2022-38439 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-23
CVE-2022-38438 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-23
CVE-2022-35708 Adobe Bridge SGI File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — BridgeCWE-122 7.8 High2022-09-19
CVE-2022-38425 Adobe Bridge DCM File Parsing Use-After-Free Information Disclosure Vulnerability — BridgeCWE-416 5.5 Medium2022-09-19
CVE-2022-35700 Adobe Bridge SVG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — BridgeCWE-787 7.8 -2022-09-19
CVE-2022-35704 Adobe Bridge SVG File Parsing Use-After-Free Remote Code Execution Vulnerability — BridgeCWE-416 7.8 High2022-09-19
CVE-2022-35706 Adobe Bridge SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — BridgeCWE-122 7.8 High2022-09-19
CVE-2022-35709 Adobe Bridge DCM File Parsing Use-After-Free Information Disclosure Vulnerability — BridgeCWE-416 5.5 Medium2022-09-19
CVE-2022-35699 Adobe Bridge Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — BridgeCWE-787 7.8 -2022-09-19
CVE-2022-35701 Adobe Bridge SVG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — BridgeCWE-787 7.8 -2022-09-19
CVE-2022-35702 Adobe Bridge SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — BridgeCWE-125 7.8 -2022-09-19
CVE-2022-35703 Adobe Bridge SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — BridgeCWE-125 7.8 -2022-09-19
CVE-2022-35705 Adobe Bridge MP4 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — BridgeCWE-125 7.8 High2022-09-19
CVE-2022-35707 Adobe Bridge SGI File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — BridgeCWE-125 7.8 High2022-09-19
CVE-2022-35664 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-16
CVE-2022-30681 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 -2022-09-16
CVE-2022-30684 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-16
CVE-2022-34218 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-16
CVE-2022-30686 AEM Reflected XSS Arbitrary code execution — Experience ManagerCWE-79 5.4 Medium2022-09-16

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.