Out-of-Bounds Write Vulnerability in Substance3D Stager by Adobe
CVE-2026-27273
7.8HIGH
What is CVE-2026-27273?
Adobe Substance3D Stager versions 3.1.7 and earlier are vulnerable to an out-of-bounds write issue that may allow an attacker to execute arbitrary code in the context of the current user. This vulnerability necessitates user interaction, as a victim must open a specially crafted malicious file for exploitation to occur. It poses significant security risks, emphasizing the need for users to ensure they are running the latest software versions.
Affected Version(s)
Substance3D - Stager 0 <= 3.1.7