Out-of-Bounds Write Vulnerability in Adobe Lightroom Classic
CVE-2026-48410

7.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
11 August 2026

What is CVE-2026-48410?

Adobe Lightroom Classic contains an out-of-bounds write vulnerability that may lead to arbitrary code execution when a user interacts with a maliciously crafted file. Successful exploitation requires the victim to open the compromised file, which could result in the execution of arbitrary code in the context of the user. This underscores the importance of maintaining updated software and exercising caution when handling unknown files.

Affected Version(s)

Lightroom Classic 0 <= 15.4, 15.4.1, 15.3, 15.3.1, 15.2, 15.2.1

Lightroom Classic 0 <= 15.4, 15.4.1, 15.3, 15.3.1, 15.2, 15.2.1

Lightroom Classic 15.5

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.