Heap-based Buffer Overflow in Adobe Bridge Affects Multiple Versions
CVE-2026-27313

7.8HIGH

Key Information:

Vendor

Adobe

Status
Vendor
CVE Published:
14 April 2026

What is CVE-2026-27313?

Adobe Bridge versions 16.0.2, 15.1.4, and earlier exhibit a heap-based buffer overflow vulnerability. This issue allows for arbitrary code execution when a user interacts with a malicious file. Exploitation necessitates that the user opens the crafted file, placing them at risk. It is crucial for users to update their software to the latest versions to mitigate potential security threats.

Affected Version(s)

Bridge 0 <= 15.1.4

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.