Untrusted Search Path Vulnerability in Adobe Illustrator
CVE-2025-27167
7.8HIGH
What is CVE-2025-27167?
Adobe Illustrator is susceptible to an untrusted search path vulnerability that could be exploited by attackers to execute unauthorized programs, gain access to sensitive data files, or tamper with application settings. This flaw arises when the application relies on a defined search path to locate essential resources. An attacker may manipulate this search path, directing it towards malicious software, which consequently gets executed by Illustrator. The scope of this issue encompasses any critical resource that the application is designed to trust, posing a significant threat to users' data integrity and security.
Affected Version(s)
Illustrator 0 <= 28.7.4