Out-of-bounds Read Vulnerability in Substance3D Painter by Adobe
CVE-2026-27219
5.5MEDIUM
What is CVE-2026-27219?
Substance3D Painter versions 11.1.2 and earlier are susceptible to an Out-of-bounds Read vulnerability. This flaw allows an attacker to potentially access sensitive information stored in memory, posing a significant risk to user privacy. Exploitation requires that the victim interacts with the attacker, specifically by opening a specially crafted malicious file. Users are advised to remain vigilant and ensure they are using an updated version of the software to mitigate this risk.
Affected Version(s)
Substance3D - Painter 0 <= 11.1.2