Heap-Based Buffer Overflow in Illustrator by Adobe
CVE-2025-61820

7.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
11 November 2025

What is CVE-2025-61820?

Adobe Illustrator is susceptible to a heap-based buffer overflow vulnerability affecting specific versions of the software. This security issue enables the execution of arbitrary code in the context of the current user, contingent upon user interaction. Specifically, the exploitation is achieved when a victim unknowingly opens a malicious file designed to exploit this vulnerability. To mitigate the risk, users should refrain from opening untrusted files and ensure their Illustrator software is updated to the latest version as recommended by Adobe.

Affected Version(s)

Illustrator 0 <= 29.8.2

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.