Out-of-bounds Write Vulnerability in Adobe Media Encoder
CVE-2026-48366

7.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
14 July 2026

What is CVE-2026-48366?

Adobe Media Encoder is susceptible to an out-of-bounds write vulnerability that could enable an attacker to execute arbitrary code within the context of the user. The exploitation of this vulnerability necessitates user interaction, as it occurs when a victim opens a specially crafted malicious file. Ensuring that software is kept up-to-date and educating users on safe file practices are crucial steps in mitigating potential risks associated with this vulnerability.

Affected Version(s)

Adobe Media Encoder 0 <= 26.2.2

Adobe Media Encoder 0 <= 26.2.2

Adobe Media Encoder 0 <= 25.6.5

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.