cbcvebase.

Adobe Photoshop vulnerabilities

94 known vulnerabilities affecting adobe/photoshop.

Total CVEs
94
CISA KEV
0
Public exploits
6
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH68MEDIUM14LOW2

Vulnerabilities

Page 2 of 5
CVE-2022-28270P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28270 [HIGH] CWE-787 CVE-2022-28270: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious SVG file.
nvd
CVE-2022-28276P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28276 [HIGH] CWE-787 CVE-2022-28276: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28278P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28278 [HIGH] CWE-787 CVE-2022-28278: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28275P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28275 [HIGH] CWE-787 CVE-2022-28275: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28273P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28273 [HIGH] CWE-787 CVE-2022-28273: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-24105P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-24105 [HIGH] CWE-787 CVE-2022-24105: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-boun Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious U3D file.
nvd
CVE-2022-23205P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-23205 [HIGH] CWE-787 CVE-2022-23205: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-boun Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-36005P3HIGHCVSS 7.8≥ 21.0.0, ≤ 21.2.9≥ 22.0.0, ≤ 22.4.2+1 more2021-08-20
CVE-2021-36005 [HIGH] CWE-121 CVE-2021-36005: Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overfl Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted PSD file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted PSD file in Photoshop.
nvd
CVE-2022-23203P3HIGHCVSS 7.8≤ 22.5.4≥ 23.0, ≤ 23.1+1 more2022-02-16
CVE-2022-23203 [HIGH] CWE-120 CVE-2022-23203: Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overfl Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file in Photoshop.
nvd
CVE-2021-40709P3HIGHCVSS 7.8≥ unspecified, ≤ 21.2.112021-09-27
CVE-2021-40709 [HIGH] CWE-120 CVE-2021-40709: Adobe Photoshop versions 21.2.11 (and earlier) and 22.5 (and earlier) are affected by a Buffer Overf Adobe Photoshop versions 21.2.11 (and earlier) and 22.5 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted SVG file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in th
nvd
CVE-2021-21082P3HIGHCVSS 7.8≥ 21.0, ≤ 21.2.5≥ 22.0, ≤ 22.2+1 more2021-03-12
CVE-2021-21082 [HIGH] CWE-788 CVE-2021-21082: Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corrup Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that
nvd
CVE-2021-36065P3HIGHCVSS 7.8≥ 21.2.0, ≤ 21.2.10≥ 22.4.0, ≤ 22.4.3+1 more2021-09-01
CVE-2021-36065 [HIGH] CWE-122 CVE-2021-36065: Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by a heap-based Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by a heap-based buffer overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28271P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28271 [HIGH] CWE-416 CVE-2022-28271: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by a use-after-fr Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
nvd
CVE-2022-28277P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28277 [HIGH] CWE-787 CVE-2022-28277: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
nvd
CVE-2021-36066P3HIGHCVSS 7.8≥ 21.2.0, ≤ 21.2.10≥ 22.4.0, ≤ 22.4.3+1 more2021-09-01
CVE-2021-36066 [HIGH] CWE-787 CVE-2021-36066: Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by an out-of-bo Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52997P3HIGHCVSS 7.8v26.02024-12-10
CVE-2024-52997 [HIGH] CWE-416 CVE-2024-52997: Photoshop Desktop versions 26.0 and earlier are affected by a Use After Free vulnerability that coul Photoshop Desktop versions 26.0 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-43760P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-43760 [HIGH] CWE-787 CVE-2024-43760: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61819P3HIGHCVSS 7.8fixed in 26.92025-11-11
CVE-2025-61819 [HIGH] CWE-122 CVE-2025-61819: Photoshop Desktop versions 26.8.1 and earlier are affected by a Heap-based Buffer Overflow vulnerabi Photoshop Desktop versions 26.8.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-45108P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-45108 [HIGH] CWE-787 CVE-2024-45108: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-45109P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-45109 [HIGH] CWE-787 CVE-2024-45109: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd