NULL Pointer Dereference in Substance3D Designer by Adobe
CVE-2026-21336
5.5MEDIUM
What is CVE-2026-21336?
Versions 15.1.0 and earlier of Adobe Substance3D Designer are susceptible to a NULL Pointer Dereference vulnerability. When exploited, this flaw can lead to application crashes, effectively causing a denial-of-service condition. Attackers must trick users into opening a specially crafted file to execute the exploit, which highlights the importance of user awareness and file handling practices.
Affected Version(s)
Substance3D - Designer 0 <= 15.1.0