cbcvebase.

Adobe Indesign vulnerabilities

202 known vulnerabilities affecting adobe/indesign.

Total CVEs
202
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH122MEDIUM76LOW1

Vulnerabilities

Page 3 of 11
CVE-2025-43594P3HIGHCVSS 7.8fixed in 19.5.4≥ 20.0, < 20.42025-07-08
CVE-2025-43594 [HIGH] CWE-787 CVE-2025-43594: InDesign Desktop versions 19.5.3 and earlier are affected by an out-of-bounds write vulnerability th InDesign Desktop versions 19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34702P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.42026-06-09
CVE-2026-34702 [HIGH] CWE-121 CVE-2026-34702: InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vul InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34695P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.42026-06-09
CVE-2026-34695 [HIGH] CWE-121 CVE-2026-34695: InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vul InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34697P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.42026-06-09
CVE-2026-34697 [HIGH] CWE-121 CVE-2026-34697: InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vul InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-34696P3HIGHCVSS 7.8fixed in 20.5.4≥ 21.0, < 21.42026-06-09
CVE-2026-34696 [HIGH] CWE-416 CVE-2026-34696: InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Use After Free vulnerability th InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2026-27283P3HIGHCVSS 7.8fixed in 20.5.3≥ 21.0, < 21.32026-04-14
CVE-2026-27283 [HIGH] CWE-416 CVE-2026-27283: InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Use After Free vulnerability th InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-45057P3HIGHCVSS 7.8≤ 16.4≥ unspecified, ≤ 16.42022-01-13
CVE-2021-45057 [HIGH] CWE-787 CVE-2021-45057: Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that c Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG2000 file.
nvd
CVE-2021-45058P3HIGHCVSS 7.8≤ 16.4≥ unspecified, ≤ 16.42022-01-13
CVE-2021-45058 [HIGH] CWE-787 CVE-2021-45058: Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that c Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG file.
nvd
CVE-2024-49544P3HIGHCVSS 7.8≤ 18.5.4≥ 19.0, < 19.5.12024-12-10
CVE-2024-49544 [HIGH] CWE-787 CVE-2024-49544: InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54226P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.52025-08-12
CVE-2025-54226 [HIGH] CWE-416 CVE-2025-54226: InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability th InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54224P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.52025-08-12
CVE-2025-54224 [HIGH] CWE-416 CVE-2025-54224: InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability th InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54225P3HIGHCVSS 7.8fixed in 19.5.5≥ 20.0, < 20.52025-08-12
CVE-2025-54225 [HIGH] CWE-416 CVE-2025-54225: InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability th InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-43589P3HIGHCVSS 7.8fixed in 19.5.4≥ 20.0, < 20.32025-06-10
CVE-2025-43589 [HIGH] CWE-416 CVE-2025-43589: InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerabilit InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-39391P3HIGHCVSS 7.8fixed in 18.5.3≥ 19.0, < 19.52024-08-14
CVE-2024-39391 [HIGH] CWE-787 CVE-2024-39391: InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-39394P3HIGHCVSS 7.8fixed in 18.5.3≥ 19.0, < 19.52024-08-14
CVE-2024-39394 [HIGH] CWE-787 CVE-2024-39394: InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-39390P3HIGHCVSS 7.8fixed in 18.5.3≥ 19.0, < 19.52024-08-14
CVE-2024-39390 [HIGH] CWE-787 CVE-2024-39390: InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-20782P3HIGHCVSS 7.8fixed in 18.5.3≥ 19.0, < 19.42024-07-09
CVE-2024-20782 [HIGH] CWE-787 CVE-2024-20782: InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-27175P3HIGHCVSS 7.8fixed in 19.5.3≥ 20.0, < 20.22025-03-11
CVE-2025-27175 [HIGH] CWE-787 CVE-2025-27175: InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-27166P3HIGHCVSS 7.8fixed in 19.5.3≥ 20.0, < 20.22025-03-11
CVE-2025-27166 [HIGH] CWE-787 CVE-2025-27166: InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-27178P3HIGHCVSS 7.8fixed in 19.5.3≥ 20.0, < 20.22025-03-11
CVE-2025-27178 [HIGH] CWE-787 CVE-2025-27178: InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulner InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
Adobe Indesign vulnerabilities | cvebase