cbcvebase.

Adobe Animate vulnerabilities

108 known vulnerabilities affecting adobe/animate.

Total CVEs
108
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH81MEDIUM24LOW2

Vulnerabilities

Page 4 of 6
CVE-2025-43555P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.12≥ 24.0.0, < 24.0.9+1 more2025-05-13
CVE-2025-43555 [HIGH] CWE-191 CVE-2025-43555: Animate versions 24.0.8, 23.0.11 and earlier are affected by an Integer Underflow (Wrap or Wraparoun Animate versions 24.0.8, 23.0.11 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52982P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52982 [HIGH] CWE-20 CVE-2024-52982: Animate versions 23.0.8, 24.0.5 and earlier are affected by an Improper Input Validation vulnerabili Animate versions 23.0.8, 24.0.5 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-30294P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30294 [HIGH] CWE-122 CVE-2024-30294: Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerabili Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-29321P3HIGHCVSS 7.8≤ 22.0.9v23.0.0+2 more2023-06-15
CVE-2023-29321 [HIGH] CWE-416 CVE-2023-29321: Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Fre Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52990P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52990 [HIGH] CWE-124 CVE-2024-52990: Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could leverage this vulnerability to manipulate memory in such a way that they could execute code under the privileges of the current user. Expl
nvd
CVE-2024-45156P3HIGHCVSS 7.8fixed in 23.0.9≥ 24.0.0, < 24.0.5+1 more2024-12-10
CVE-2024-45156 [HIGH] CWE-476 CVE-2024-45156: Animate versions 23.0.8, 24.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability Animate versions 23.0.8, 24.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-22243P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22243 [HIGH] CWE-121 CVE-2023-22243: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Stack-based B Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-30295P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30295 [HIGH] CWE-476 CVE-2024-30295: Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-40733P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-40733 [HIGH] CWE-788 CVE-2021-40733: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .psd file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2021-42267P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42267 [HIGH] CWE-788 CVE-2021-42267: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious FLA file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2021-42266P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42266 [HIGH] CWE-788 CVE-2021-42266: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious FLA file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2022-38411P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.11≥ 22.0, ≤ 22.0.7+1 more2022-09-16
CVE-2022-38411 [HIGH] CWE-122 CVE-2022-38411: Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based Bu Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-22246P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22246 [HIGH] CWE-416 CVE-2023-22246: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Use After Fre Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-38412P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.11≥ 22.0, ≤ 22.0.7+1 more2022-09-16
CVE-2022-38412 [HIGH] CWE-125 CVE-2022-38412: Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by an out-of-bound Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue re
nvd
CVE-2023-22236P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22236 [HIGH] CWE-122 CVE-2023-22236: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Heap-based Bu Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-20797P3HIGHCVSS 7.8fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20797 [HIGH] CWE-125 CVE-2024-20797: Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction i
nvd
CVE-2021-28573P3MEDIUMCVSS 6.5≤ 20.5.1≥ 21.0.0, ≤ 21.0.5+1 more2021-06-28
CVE-2021-28573 [MEDIUM] CWE-125 CVE-2021-28573: Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when p Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mali
nvd
CVE-2021-21008P4HIGHCVSS 7.0≤ 21.0v21.0 and earlier2021-01-13
CVE-2021-21008 [HIGH] CWE-427 CVE-2021-21008: Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that cou Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21074P4HIGHCVSS 7.1≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21074 [HIGH] CWE-125 CVE-2021-21074: Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21076P4HIGHCVSS 7.1≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21076 [HIGH] CWE-125 CVE-2021-21076: Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
Adobe Animate vulnerabilities | cvebase