cbcvebase.

Adobe Animate vulnerabilities

108 known vulnerabilities affecting adobe/animate.

Total CVEs
108
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH81MEDIUM24LOW2

Vulnerabilities

Page 1 of 6
CVE-2016-7866P2CRITICALCVSS 9.8PoC≤ 15.2.1.952016-12-15
CVE-2016-7866 [CRITICAL] CWE-119 CVE-2016-7866: Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Su Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2021-21052P3HIGHCVSS 7.8≤ 21.0.2≥ unspecified, ≤ 21.0.22021-02-11
CVE-2021-21052 [HIGH] CWE-787 CVE-2021-21052: Adobe Animate version 21.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability. An u Adobe Animate version 21.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-48345P3HIGHCVSS 8.2≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48345 [HIGH] CWE-78 CVE-2026-48345: Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Com Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
nvd
CVE-2021-21077P3HIGHCVSS 7.8≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21077 [HIGH] CWE-122 CVE-2021-21077: Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-48350P3HIGHCVSS 8.6≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48350 [HIGH] CWE-22 CVE-2026-48350: Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Travers Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or directories outside the intended restrictions. Exploitation of this issue requi
nvd
CVE-2026-48349P3HIGHCVSS 8.1≥ 23.0.0, < 23.0.16≥ 24.0.0, < 24.0.142026-07-14
CVE-2026-48349 [HIGH] CWE-863 CVE-2026-48349: Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
nvd
CVE-2021-28629P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28629 [HIGH] CWE-122 CVE-2021-28629: Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28620P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28620 [HIGH] CWE-122 CVE-2021-28620: Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61804P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.15≥ 24.0.0, < 24.0.12+1 more2025-10-15
CVE-2025-61804 [HIGH] CWE-122 CVE-2025-61804: Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerabi Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21071P3HIGHCVSS 7.8≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21071 [HIGH] CWE-787 CVE-2021-21071: Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unau Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28621P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28621 [HIGH] CWE-125 CVE-2021-28621: Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-28622P3HIGHCVSS 7.8≤ 21.0.6≥ unspecified, ≤ 21.0.62021-08-24
CVE-2021-28622 [HIGH] CWE-787 CVE-2021-28622: Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Write vulnerability. An u Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30664P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.10≥ 22.0, ≤ 22.0.5+1 more2022-06-16
CVE-2022-30664 [HIGH] CWE-787 CVE-2022-30664: Adobe Animate version 22.0.5 (and earlier) is affected by an out-of-bounds write vulnerability that Adobe Animate version 22.0.5 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52988P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52988 [HIGH] CWE-787 CVE-2024-52988: Animate versions 23.0.8, 24.0.5 and earlier are affected by an out-of-bounds write vulnerability tha Animate versions 23.0.8, 24.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-49528P3HIGHCVSS 7.8fixed in 23.0.8≥ 24.0.0, < 24.0.5+1 more2024-11-12
CVE-2024-49528 [HIGH] CWE-787 CVE-2024-49528: Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds write vulnerability tha Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2020-9748P3HIGHCVSS 7.8≤ 20.5≥ unspecified, ≤ 20.52020-10-21
CVE-2020-9748 [HIGH] CWE-121 CVE-2020-9748: Adobe Animate version 20.5 (and earlier) is affected by a stack overflow vulnerability, which could Adobe Animate version 20.5 (and earlier) is affected by a stack overflow vulnerability, which could lead to arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .fla file in Animate.
nvd
CVE-2025-54279P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.15≥ 24.0.0, < 24.0.12+1 more2025-10-15
CVE-2025-54279 [HIGH] CWE-416 CVE-2025-54279: Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that co Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-30328P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.12≥ 24.0.0, < 24.0.9+1 more2025-05-13
CVE-2025-30328 [HIGH] CWE-787 CVE-2025-30328: Animate versions 24.0.8, 23.0.11 and earlier are affected by an out-of-bounds write vulnerability th Animate versions 24.0.8, 23.0.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-42269P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42269 [HIGH] CWE-416 CVE-2021-42269: Adobe Animate version 21.0.9 (and earlier) are affected by a use-after-free vulnerability in the pro Adobe Animate version 21.0.9 (and earlier) are affected by a use-after-free vulnerability in the processing of a malformed FLA file that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-42270P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42270 [HIGH] CWE-787 CVE-2021-42270: Adobe Animate version 21.0.9 (and earlier) are affected by an out-of-bounds write vulnerability that Adobe Animate version 21.0.9 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious BMP file.
nvd
Adobe Animate vulnerabilities | cvebase