cbcvebase.

Adobe Incopy vulnerabilities

65 known vulnerabilities affecting adobe/incopy.

Total CVEs
65
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH58MEDIUM7

Vulnerabilities

Page 1 of 4
CVE-2021-21090P3HIGHCVSS 8.8≤ 16.0≥ unspecified, ≤ 16.02021-06-28
CVE-2021-21090 [HIGH] CWE-22 CVE-2021-21090: Adobe InCopy version 16.0 (and earlier) is affected by an path traversal vulnerability when parsing Adobe InCopy version 16.0 (and earlier) is affected by an path traversal vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34706P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.4+1 more2026-06-09
CVE-2026-34706 [HIGH] CWE-787 CVE-2026-34706: InCopy versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30654P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30654 [HIGH] CWE-122 CVE-2022-30654: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffe Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30650P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30650 [HIGH] CWE-122 CVE-2022-30650: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffe Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54215P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.5+1 more2025-08-12
CVE-2025-54215 [HIGH] CWE-787 CVE-2025-54215: InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54216P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.5+1 more2025-08-12
CVE-2025-54216 [HIGH] CWE-787 CVE-2025-54216: InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54221P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.5+1 more2025-08-12
CVE-2025-54221 [HIGH] CWE-787 CVE-2025-54221: InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54218P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.5+1 more2025-08-12
CVE-2025-54218 [HIGH] CWE-787 CVE-2025-54218: InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61817P3HIGHCVSS 7.8≤ 19.5.5≥ 20.0, < 20.5.12025-11-11
CVE-2025-61817 [HIGH] CWE-416 CVE-2025-61817: InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could r InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61818P3HIGHCVSS 7.8≤ 19.5.5≥ 20.0, < 20.5.12025-11-11
CVE-2025-61818 [HIGH] CWE-416 CVE-2025-61818: InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could r InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34631P3HIGHCVSS 7.8fixed in 20.5.3≥ 21.0, < 21.3+1 more2026-04-14
CVE-2026-34631 [HIGH] CWE-787 CVE-2026-34631: InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that c InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30653P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30653 [HIGH] CWE-787 CVE-2022-30653: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds w Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30656P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30656 [HIGH] CWE-787 CVE-2022-30656: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds w Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30652P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30652 [HIGH] CWE-787 CVE-2022-30652: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds w Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54223P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.5+1 more2025-08-12
CVE-2025-54223 [HIGH] CWE-416 CVE-2025-54223: InCopy versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could r InCopy versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61816P3HIGHCVSS 7.8≤ 19.5.5≥ 20.0, < 20.5.12025-11-11
CVE-2025-61816 [HIGH] CWE-122 CVE-2025-61816: InCopy versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability InCopy versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34708P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.4+1 more2026-06-09
CVE-2026-34708 [HIGH] CWE-121 CVE-2026-34708: InCopy versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability InCopy versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30657P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30657 [HIGH] CWE-416 CVE-2022-30657: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Use-After-Free v Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-30655P3HIGHCVSS 7.8≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-06-16
CVE-2022-30655 [HIGH] CWE-416 CVE-2022-30655: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Use-After-Free v Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-45056P3HIGHCVSS 7.8≤ 16.4≥ unspecified, ≤ 16.42022-01-13
CVE-2021-45056 [HIGH] CWE-787 CVE-2021-45056: Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that cou Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
Adobe Incopy vulnerabilities | cvebase