Adobe Animate vulnerabilities
108 known vulnerabilities affecting adobe/animate.
Total CVEs
108
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH81MEDIUM24LOW2
Vulnerabilities
Page 1 of 6
CVE-2016-7866P2CRITICALCVSS 9.8PoC≤ 15.2.1.952016-12-15
CVE-2016-7866 [CRITICAL] CWE-119 CVE-2016-7866: Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Su
Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2021-21052P3HIGHCVSS 7.8≤ 21.0.2≥ unspecified, ≤ 21.0.22021-02-11
CVE-2021-21052 [HIGH] CWE-787 CVE-2021-21052: Adobe Animate version 21.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability. An u
Adobe Animate version 21.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-48345P3HIGHCVSS 8.2≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48345 [HIGH] CWE-78 CVE-2026-48345: Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Com
Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
nvd
CVE-2021-21077P3HIGHCVSS 7.8≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21077 [HIGH] CWE-122 CVE-2021-21077: Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability
Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-48350P3HIGHCVSS 8.6≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48350 [HIGH] CWE-22 CVE-2026-48350: Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Travers
Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or directories outside the intended restrictions. Exploitation of this issue requi
nvd
CVE-2026-48349P3HIGHCVSS 8.1≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48349 [HIGH] CWE-863 CVE-2026-48349: Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code
Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
nvd
CVE-2021-28629P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28629 [HIGH] CWE-122 CVE-2021-28629: Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability
Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28620P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28620 [HIGH] CWE-122 CVE-2021-28620: Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability
Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61804P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.15≥ 24.0.0, < 24.0.12+1 more2025-10-15
CVE-2025-61804 [HIGH] CWE-122 CVE-2025-61804: Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerabi
Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21071P3HIGHCVSS 7.8≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21071 [HIGH] CWE-787 CVE-2021-21071: Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unau
Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28621P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28621 [HIGH] CWE-125 CVE-2021-28621: Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un
Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28622P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28622 [HIGH] CWE-787 CVE-2021-28622: Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Write vulnerability. An u
Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30664P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.10≥ 22.0, ≤ 22.0.5+1 more2022-06-16
CVE-2022-30664 [HIGH] CWE-787 CVE-2022-30664: Adobe Animate version 22.0.5 (and earlier) is affected by an out-of-bounds write vulnerability that
Adobe Animate version 22.0.5 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52988P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52988 [HIGH] CWE-787 CVE-2024-52988: Animate versions 23.0.8, 24.0.5 and earlier are affected by an out-of-bounds write vulnerability tha
Animate versions 23.0.8, 24.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-49528P3HIGHCVSS 7.8fixed in 23.0.8≥ 24.0.0, < 24.0.5+1 more2024-11-12
CVE-2024-49528 [HIGH] CWE-787 CVE-2024-49528: Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds write vulnerability tha
Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2020-9748P3HIGHCVSS 7.8≤ 20.5≥ unspecified, ≤ 20.52020-10-21
CVE-2020-9748 [HIGH] CWE-121 CVE-2020-9748: Adobe Animate version 20.5 (and earlier) is affected by a stack overflow vulnerability, which could
Adobe Animate version 20.5 (and earlier) is affected by a stack overflow vulnerability, which could lead to arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .fla file in Animate.
nvd
CVE-2025-54279P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.15≥ 24.0.0, < 24.0.12+1 more2025-10-15
CVE-2025-54279 [HIGH] CWE-416 CVE-2025-54279: Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that co
Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-30328P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.12≥ 24.0.0, < 24.0.9+1 more2025-05-13
CVE-2025-30328 [HIGH] CWE-787 CVE-2025-30328: Animate versions 24.0.8, 23.0.11 and earlier are affected by an out-of-bounds write vulnerability th
Animate versions 24.0.8, 23.0.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-42269P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42269 [HIGH] CWE-416 CVE-2021-42269: Adobe Animate version 21.0.9 (and earlier) are affected by a use-after-free vulnerability in the pro
Adobe Animate version 21.0.9 (and earlier) are affected by a use-after-free vulnerability in the processing of a malformed FLA file that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-42270P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42270 [HIGH] CWE-787 CVE-2021-42270: Adobe Animate version 21.0.9 (and earlier) are affected by an out-of-bounds write vulnerability that
Adobe Animate version 21.0.9 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious BMP file.
nvd
1 / 6Next →