CVE-2026-34641 – Adobe Premiere Pro
“A single malicious media file can turn creative work into a security risk.”
This patch addresses CVE-2026-34641, an Out-of-Bounds Write vulnerability (CWE-787) affecting Adobe Premiere Pro. The CVSS score is 7.8, which is High severity. No verified real-world exploitation has been reported.
The vulnerability could allow arbitrary code execution in the context of the current user if a victim opens a specially crafted malicious file in Adobe Premiere Pro. Because exploitation requires user interaction, an attacker must convince a user to open the malicious file. Based on the supplied assessment, the vulnerability has Remote Code Execution (RCE) and Elevation of Privilege (EoP) characteristics. Adobe has released a security update to address the memory handling flaw and organizations should deploy the update promptly.
Key Details
- Affected Product
- Adobe Premiere
- Attack Vector
- Local
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- Required
- CWE Classification
- CWE-787