cbcvebase.

Adobe Acrobat Reader Dc vulnerabilities

1,798 known vulnerabilities affecting adobe/acrobat_reader_dc.

Total CVEs
1,798
CISA KEV
7
actively exploited
Public exploits
30
Exploited in wild
15
Severity breakdown
CRITICAL449HIGH859MEDIUM456LOW34

Vulnerabilities

Page 47 of 90
CVE-2025-43575P3HIGHCVSS 7.8≥ 15.008.20082, < 25.001.20531≥ 15.008.20082, < 25.001.205292025-06-10
CVE-2025-43575 [HIGH] CWE-787 CVE-2025-43575: Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by an out- Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-47918P3HIGHCVSS 7.8≥ 15.008.20082, < 26.001.216622026-06-09
CVE-2026-47918 [HIGH] CWE-416 CVE-2026-47918: Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vuln Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-47919P3HIGHCVSS 7.8≥ 15.008.20082, < 26.001.216622026-06-09
CVE-2026-47919 [HIGH] CWE-416 CVE-2026-47919: Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vuln Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2015-8458P3MEDIUMCVSS 6.8≥ 15.006.30060, < 15.006.30094≥ 15.008.20082, < 15.009.200692015-12-21
CVE-2015-8458 [MEDIUM] CVE-2015-8458: Heap-based buffer overflow in AGM.dll in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x befor Heap-based buffer overflow in AGM.dll in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code via a multiple-layer PDF document, a different vulnerabilit
nvd
CVE-2022-28234P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.200852022-05-11
CVE-2022-28234 [HIGH] CWE-122 CVE-2022-28234: Acrobat Reader DC versions 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 ( Acrobat Reader DC versions 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) is affected by a heap-based buffer overflow vulnerability due to insecure handling of a crafted .pdf file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that
nvd
CVE-2022-34226P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.201422022-07-15
CVE-2022-34226 [HIGH] CWE-125 CVE-2022-34226: Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.3022 Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of
nvd
CVE-2023-26396P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 23.001.200932023-04-12
CVE-2023-26396 [HIGH] CWE-379 CVE-2023-26396: Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by a Creation of Temporary File in Directory with Incorrect Permissions vulnerability that could result in privilege escalation in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malici
nvd
CVE-2017-2958P3HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2958 [HIGH] CWE-416 CVE-2017-2958: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2022-34223P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.201422022-07-15
CVE-2022-34223 [HIGH] CWE-416 CVE-2022-34223: Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.3022 Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-34229P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.201422022-07-15
CVE-2022-34229 [HIGH] CWE-416 CVE-2022-34229: Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.3022 Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2018-15979P3HIGHCVSS 7.5≥ 15.006.30060, ≤ 15.006.30456≥ 15.008.20082, ≤ 19.008.20080+1 more2018-11-29
CVE-2018-15979 [HIGH] CWE-200 CVE-2018-15979: Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.0 Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.006.30456 and earlier have a ntlm sso hash theft vulnerability. Successful exploitation could lead to information disclosure.
nvd
CVE-2022-24103P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.200852022-05-11
CVE-2022-24103 [HIGH] CWE-416 CVE-2022-24103: Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 ( Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-34225P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.201422022-07-15
CVE-2022-34225 [HIGH] CWE-416 CVE-2022-34225: Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.3022 Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28551P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 21.001.20150≥ 15.008.20082, ≤ 21.001.201492021-08-24
CVE-2021-28551 [HIGH] CWE-125 CVE-2021-28551: Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2 Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Out-of-bounds read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires us
nvd
CVE-2022-34230P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 22.001.201422022-07-15
CVE-2022-34230 [HIGH] CWE-416 CVE-2022-34230: Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.3022 Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21037P3HIGHCVSS 7.8≤ 20.013.200742021-02-11
CVE-2021-21037 [HIGH] CWE-22 CVE-2021-21037: Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2 Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Path Traversal vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user int
nvd
CVE-2023-26422P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 23.001.200932023-04-12
CVE-2023-26422 [HIGH] CWE-416 CVE-2023-26422: Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-26423P3HIGHCVSS 7.8≥ 15.008.20082, ≤ 23.001.200932023-04-12
CVE-2023-26423 [HIGH] CWE-416 CVE-2023-26423: Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2019-8162P3HIGHCVSS 8.1≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8162 [HIGH] CWE-362 CVE-2019-8162: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have a race condition vulnerability. Successful exploitation could lead to arbitrary code execution .
nvd
CVE-2022-42339P3HIGHCVSS 7.8≥ 15.008.20082, < 22.003.202582022-10-14
CVE-2022-42339 [HIGH] CWE-121 CVE-2022-42339: Adobe Acrobat Reader versions 22.002.20212 (and earlier) and 20.005.30381 (and earlier) are affected Adobe Acrobat Reader versions 22.002.20212 (and earlier) and 20.005.30381 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
Adobe Acrobat Reader Dc vulnerabilities | cvebase