Adobe Animate vulnerabilities

102 known vulnerabilities affecting adobe/animate.

Total CVEs
102
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH75MEDIUM24LOW2

Vulnerabilities

Page 3 of 6
CVE-2024-47415HIGHCVSS 7.8≥ 23.0.0, < 23.0.8≥ 24.0.0, < 24.0.5+1 more2024-10-09
CVE-2024-47415 [HIGH] CWE-416 CVE-2024-47415: Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that coul Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-47420MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.8≥ 24.0.0, < 24.0.5+1 more2024-10-09
CVE-2024-47420 [MEDIUM] CWE-125 CVE-2024-47420: Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-47419MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.8≥ 24.0.0, < 24.0.5+1 more2024-10-09
CVE-2024-47419 [MEDIUM] CWE-125 CVE-2024-47419: Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30295HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30295 [HIGH] CWE-476 CVE-2024-30295: Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30293HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30293 [HIGH] CWE-121 CVE-2024-30293: Animate versions 24.0.2, 23.0.5 and earlier are affected by a Stack-based Buffer Overflow vulnerabil Animate versions 24.0.2, 23.0.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30296HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30296 [HIGH] CWE-787 CVE-2024-30296: Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability tha Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30297HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30297 [HIGH] CWE-787 CVE-2024-30297: Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability tha Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30294HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30294 [HIGH] CWE-122 CVE-2024-30294: Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerabili Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30282HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30282 [HIGH] CWE-787 CVE-2024-30282: Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability tha Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-30298MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30298 [MEDIUM] CWE-125 CVE-2024-30298: Animate versions 24.0.2, 23.0.5 and earlier Answer: are affected by an out-of-bounds read vulnerabil Animate versions 24.0.2, 23.0.5 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20795HIGHCVSS 7.8fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20795 [HIGH] CWE-190 CVE-2024-20795: Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulner Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20797HIGHCVSS 7.8fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20797 [HIGH] CWE-125 CVE-2024-20797: Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction i
cvelistv5nvd
CVE-2024-20794MEDIUMCVSS 5.5fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20794 [MEDIUM] CWE-476 CVE-2024-20794: Animate versions 23.0.4, 24.0.1 and earlier are affected by a NULL Pointer Dereference vulnerability Animate versions 23.0.4, 24.0.1 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service. An attacker could leverage this vulnerability to cause a system crash, resulting in a denial of service. Exploitation of this issue requires user interaction in that a victim must open a malicious
cvelistv5nvd
CVE-2024-20796MEDIUMCVSS 5.5fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20796 [MEDIUM] CWE-125 CVE-2024-20796: Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability that Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20761HIGHCVSS 7.8≥ 23.0.0, < 23.0.4v24.0.0+1 more2024-03-18
CVE-2024-20761 [HIGH] CWE-787 CVE-2024-20761: Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds write vulnerability that Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20764MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.4v24.0.0+1 more2024-03-18
CVE-2024-20764 [MEDIUM] CWE-125 CVE-2024-20764: Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that c Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20763MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.4v24.0.0+1 more2024-03-18
CVE-2024-20763 [MEDIUM] CWE-125 CVE-2024-20763: Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that c Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2024-20762MEDIUMCVSS 5.5≥ 23.0.0, < 23.0.4v24.0.0+1 more2024-03-18
CVE-2024-20762 [MEDIUM] CWE-125 CVE-2024-20762: Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that c Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2023-44325MEDIUMCVSS 5.5≤ 23.0.22023-11-17
CVE-2023-44325 [MEDIUM] CWE-125 CVE-2023-44325: Adobe Animate versions 23.0.2 (and earlier) is affected by an out-of-bounds read vulnerability that Adobe Animate versions 23.0.2 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2023-29321HIGHCVSS 7.8≤ 22.0.9v23.0.0+2 more2023-06-15
CVE-2023-29321 [HIGH] CWE-416 CVE-2023-29321: Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Fre Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd