Deserialization Vulnerability in Adobe Connect Affects Multiple Versions
CVE-2026-34615

9.3CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
14 April 2026

What is CVE-2026-34615?

Adobe Connect, including versions 2025.3 and 12.10, is susceptible to a deserialization of untrusted data vulnerability. This flaw could allow an attacker to execute arbitrary code within the context of the affected user without needing any interaction. The vulnerability's exploitation could have serious implications for data security and integrity. Users are strongly advised to keep their software updated and consult official security advisories for guidance on remediation.

Affected Version(s)

Adobe Connect 0 <= 12.10

References

CVSS V3.1

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.