Out-of-Bounds Read Vulnerability in Substance3D Modeler by Adobe
CVE-2026-21348
5.5MEDIUM
What is CVE-2026-21348?
Substance3D Modeler versions 1.22.5 and earlier are susceptible to an out-of-bounds read vulnerability that can lead to the exposure of sensitive information from memory. This vulnerability requires user interaction; specifically, a victim must open a specially crafted malicious file to trigger the issue, potentially allowing attackers to access confidential data.
Affected Version(s)
Substance3D - Modeler 0 <= 1.22.5
Substance3D - Modeler 1.22.6