CVE-2026-48334 – Adobe Illustrator Desktop 2026

CVSS 9.3 CRITICAL Critical - Same Day Deployment

“One malicious design file could turn a creative workflow into a code-execution event.”

Adobe Illustrator Desktop 2026 addresses five vulnerabilities that could result in arbitrary code execution in the context of the current user. The update covers improper input validation, an untrusted search path, and three out-of-bounds write flaws. Successful exploitation requires a victim to open a malicious file.

CVE-2026-48334 has a CVSS score of 9.3, Critical severity. CVE-2026-48275 has a CVSS score of 8.6, High severity. CVE-2026-48335 has a CVSS score of 7.8, High severity. CVE-2026-48336 has a CVSS score of 7.8, High severity. CVE-2026-48337 has a CVSS score of 7.8, High severity.

Key Details

Affected Product
Adobe Illustrator
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
CWE Classification
CWE-20
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.