Incorrect Authorization Vulnerability in Adobe Illustrator
CVE-2026-75990

8.6HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
8 September 2026

What is CVE-2026-75990?

Adobe Illustrator is susceptible to a vulnerability due to incorrect authorization, allowing an attacker to execute arbitrary code in the current user's context. Successful exploitation necessitates that the victim open a specially crafted malicious file, resulting in the potential for unauthorized actions within the application. Users are advised to update their software to mitigate the risks associated with this vulnerability.

Affected Version(s)

Illustrator Desktop 2025 0 <= 29.8.10

Illustrator Desktop 2026 0 <= 30.7

Illustrator Desktop 2025 29.8.11

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.