NULL Pointer Dereference Vulnerability in Substance3D Painter by Adobe
CVE-2026-27214
5.5MEDIUM
What is CVE-2026-27214?
Substance3D Painter, developed by Adobe, is susceptible to a NULL Pointer Dereference vulnerability in versions 11.1.2 and earlier. This issue can potentially lead to application denial-of-service, allowing attackers to crash the application by leveraging malicious files. User interaction is required for exploitation, as the victim must open a specifically crafted file that triggers the vulnerability.
Affected Version(s)
Substance3D - Painter 0 <= 11.1.2