Heap-based Buffer Overflow in Adobe InDesign Desktop Products
CVE-2026-34628
7.8HIGH
What is CVE-2026-34628?
A heap-based buffer overflow vulnerability exists in Adobe InDesign Desktop versions 20.5.2, 21.2 and earlier. This flaw could allow an attacker to execute arbitrary code within the context of an affected user's environment. Exploitation of this vulnerability requires user interaction, where the victim needs to open a specially crafted malicious file. It is crucial for users to remain cautious and ensure they are using the latest version of the software to mitigate security risks.
Affected Version(s)
InDesign Desktop 0 <= 21.2