CVE-2026-48335 – Adobe Illustrator Desktop 2026
CVSS 7.8
IMPORTANT
Critical - Same Day Deployment
“One malicious design file could turn a creative workflow into a code-execution event.”
Adobe Illustrator Desktop 2026 addresses five vulnerabilities that could result in arbitrary code execution in the context of the current user. The update covers improper input validation, an untrusted search path, and three out-of-bounds write flaws. Successful exploitation requires a victim to open a malicious file.
CVE-2026-48334 has a CVSS score of 9.3, Critical severity. CVE-2026-48275 has a CVSS score of 8.6, High severity. CVE-2026-48335 has a CVSS score of 7.8, High severity. CVE-2026-48336 has a CVSS score of 7.8, High severity. CVE-2026-48337 has a CVSS score of 7.8, High severity.
Key Details
- Affected Product
- Adobe Illustrator
- Attack Vector
- Local
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- Required
- CWE Classification
- CWE-787
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.