CVE-2026-34641 – Adobe Premiere Pro

CVSS 7.8 IMPORTANT High with EoP or RCE – Expedited Deployment

“A single malicious media file can turn creative work into a security risk.”

This patch addresses CVE-2026-34641, an Out-of-Bounds Write vulnerability (CWE-787) affecting Adobe Premiere Pro. The CVSS score is 7.8, which is High severity. No verified real-world exploitation has been reported.

The vulnerability could allow arbitrary code execution in the context of the current user if a victim opens a specially crafted malicious file in Adobe Premiere Pro. Because exploitation requires user interaction, an attacker must convince a user to open the malicious file. Based on the supplied assessment, the vulnerability has Remote Code Execution (RCE) and Elevation of Privilege (EoP) characteristics. Adobe has released a security update to address the memory handling flaw and organizations should deploy the update promptly.

Key Details

Affected Product
Adobe Premiere
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
CWE Classification
CWE-787
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.