Out-of-bounds Read Vulnerability in Adobe Illustrator
CVE-2026-27268

5.5MEDIUM

What is CVE-2026-27268?

Adobe Illustrator versions 29.8.4, 30.1 and earlier are impacted by an Out-of-bounds Read vulnerability that could potentially expose sensitive information stored in memory. This vulnerability requires user interaction for exploitation, meaning that an attacker must convince the victim to open a specially crafted file. If successfully executed, this exploit could allow unauthorized access to confidential data, highlighting the importance of cautious file handling and regular software updates.

Affected Version(s)

Illustrator Desktop 2025 0 <= 29.8.4

Illustrator Desktop 2026 0 <= 30.1

Illustrator Desktop 2025 29.8.5

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.