Heap-based Buffer Overflow in Acrobat Reader by Adobe
CVE-2026-81993

5.5MEDIUM

Key Information:

Vendor

Adobe

Vendor
CVE Published:
8 September 2026

What is CVE-2026-81993?

Adobe Acrobat Reader is susceptible to a heap-based buffer overflow vulnerability that may allow an attacker to gain access to sensitive information stored in memory. This vulnerability requires user interaction; specifically, a victim must open a specially crafted malicious file to trigger the exploit. Successful exploitation could lead to the disclosure of confidential data, emphasizing the need for users to remain vigilant against opening unknown files.

Affected Version(s)

Acrobat 2024 0 <= 24.001.30383

Acrobat Reader 0 <= 26.002.21900

Adobe Acrobat 0 <= 26.002.21900

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.