Adobe Animate vulnerabilities
108 known vulnerabilities affecting adobe/animate.
Total CVEs
108
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH81MEDIUM24LOW2
Vulnerabilities
Page 4 of 6
CVE-2025-43555P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.12≥ 24.0.0, < 24.0.9+1 more2025-05-13
CVE-2025-43555 [HIGH] CWE-191 CVE-2025-43555: Animate versions 24.0.8, 23.0.11 and earlier are affected by an Integer Underflow (Wrap or Wraparoun
Animate versions 24.0.8, 23.0.11 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52982P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52982 [HIGH] CWE-20 CVE-2024-52982: Animate versions 23.0.8, 24.0.5 and earlier are affected by an Improper Input Validation vulnerabili
Animate versions 23.0.8, 24.0.5 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-30294P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30294 [HIGH] CWE-122 CVE-2024-30294: Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerabili
Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-29321P3HIGHCVSS 7.8≤ 22.0.9v23.0.0+2 more2023-06-15
CVE-2023-29321 [HIGH] CWE-416 CVE-2023-29321: Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Fre
Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52990P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.9≥ 24.0.0, < 24.0.6+1 more2024-12-10
CVE-2024-52990 [HIGH] CWE-124 CVE-2024-52990: Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow')
Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could leverage this vulnerability to manipulate memory in such a way that they could execute code under the privileges of the current user. Expl
nvd
CVE-2024-45156P3HIGHCVSS 7.8fixed in 23.0.9≥ 24.0.0, < 24.0.5+1 more2024-12-10
CVE-2024-45156 [HIGH] CWE-476 CVE-2024-45156: Animate versions 23.0.8, 24.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability
Animate versions 23.0.8, 24.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-22243P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22243 [HIGH] CWE-121 CVE-2023-22243: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Stack-based B
Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-30295P3HIGHCVSS 7.8≥ 23.0.0, < 23.0.6≥ 24.0.0, < 24.0.3+1 more2024-05-16
CVE-2024-30295 [HIGH] CWE-476 CVE-2024-30295: Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability
Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-40733P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-40733 [HIGH] CWE-788 CVE-2021-40733: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i
Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .psd file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2021-42267P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42267 [HIGH] CWE-788 CVE-2021-42267: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i
Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious FLA file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2021-42266P3HIGHCVSS 7.8≤ 21.0.9≥ unspecified, ≤ 21.0.92021-11-18
CVE-2021-42266 [HIGH] CWE-788 CVE-2021-42266: Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to i
Adobe Animate version 21.0.9 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious FLA file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
nvd
CVE-2022-38411P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.11≥ 22.0, ≤ 22.0.7+1 more2022-09-16
CVE-2022-38411 [HIGH] CWE-122 CVE-2022-38411: Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based Bu
Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-22246P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22246 [HIGH] CWE-416 CVE-2023-22246: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Use After Fre
Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-38412P3HIGHCVSS 7.8≥ 21.0, ≤ 21.0.11≥ 22.0, ≤ 22.0.7+1 more2022-09-16
CVE-2022-38412 [HIGH] CWE-125 CVE-2022-38412: Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by an out-of-bound
Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue re
nvd
CVE-2023-22236P3HIGHCVSS 7.8≥ 22.0.0, ≤ 22.0.8v23.0.0+1 more2023-02-17
CVE-2023-22236 [HIGH] CWE-122 CVE-2023-22236: Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Heap-based Bu
Adobe Animate versions 22.0.8 (and earlier) and 23.0.0 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-20797P3HIGHCVSS 7.8fixed in 23.0.5≥ 24.0.0, < 24.0.2+1 more2024-04-11
CVE-2024-20797 [HIGH] CWE-125 CVE-2024-20797: Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when
Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction i
nvd
CVE-2021-28573P3MEDIUMCVSS 6.5≤ 20.5.1≥ 21.0.0, ≤ 21.0.5+1 more2021-06-28
CVE-2021-28573 [MEDIUM] CWE-125 CVE-2021-28573: Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when p
Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mali
nvd
CVE-2021-21008P4HIGHCVSS 7.0≤ 21.0v21.0 and earlier2021-01-13
CVE-2021-21008 [HIGH] CWE-427 CVE-2021-21008: Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that cou
Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21074P4HIGHCVSS 7.1≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21074 [HIGH] CWE-125 CVE-2021-21074: Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un
Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-21076P4HIGHCVSS 7.1≤ 21.0.3≥ unspecified, ≤ 21.0.32021-03-12
CVE-2021-21076 [HIGH] CWE-125 CVE-2021-21076: Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An un
Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd