Out-of-Bounds Write Vulnerability in Media Encoder by Adobe
CVE-2026-48370

7.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
14 July 2026

What is CVE-2026-48370?

Adobe Media Encoder is susceptible to an out-of-bounds write vulnerability that enables arbitrary code execution in the context of the current user. To exploit this issue, an attacker must entice a victim to open a specially crafted malicious file, leading to serious security risks. Users are advised to update their software to the latest version to mitigate potential threats associated with this vulnerability.

Affected Version(s)

Adobe Media Encoder 0 <= 26.2.2

Adobe Media Encoder 0 <= 26.2.2

Adobe Media Encoder 0 <= 25.6.5

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.