Adobe Photoshop vulnerabilities
94 known vulnerabilities affecting adobe/photoshop.
Total CVEs
94
CISA KEV
0
Public exploits
6
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH68MEDIUM14LOW2
Vulnerabilities
Page 2 of 5
CVE-2022-28270P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28270 [HIGH] CWE-787 CVE-2022-28270: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious SVG file.
nvd
CVE-2022-28276P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28276 [HIGH] CWE-787 CVE-2022-28276: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28278P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28278 [HIGH] CWE-787 CVE-2022-28278: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28275P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28275 [HIGH] CWE-787 CVE-2022-28275: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28273P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28273 [HIGH] CWE-787 CVE-2022-28273: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-24105P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-24105 [HIGH] CWE-787 CVE-2022-24105: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-boun
Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious U3D file.
nvd
CVE-2022-23205P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-23205 [HIGH] CWE-787 CVE-2022-23205: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-boun
Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-36005P3HIGHCVSS 7.8≥ 21.0.0, ≤ 21.2.9≥ 22.0.0, ≤ 22.4.2+1 more2021-08-20
CVE-2021-36005 [HIGH] CWE-121 CVE-2021-36005: Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overfl
Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted PSD file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted PSD file in Photoshop.
nvd
CVE-2022-23203P3HIGHCVSS 7.8≤ 22.5.4≥ 23.0, ≤ 23.1+1 more2022-02-16
CVE-2022-23203 [HIGH] CWE-120 CVE-2022-23203: Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overfl
Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file in Photoshop.
nvd
CVE-2021-40709P3HIGHCVSS 7.8≥ unspecified, ≤ 21.2.112021-09-27
CVE-2021-40709 [HIGH] CWE-120 CVE-2021-40709: Adobe Photoshop versions 21.2.11 (and earlier) and 22.5 (and earlier) are affected by a Buffer Overf
Adobe Photoshop versions 21.2.11 (and earlier) and 22.5 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted SVG file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in th
nvd
CVE-2021-21082P3HIGHCVSS 7.8≥ 21.0, ≤ 21.2.5≥ 22.0, ≤ 22.2+1 more2021-03-12
CVE-2021-21082 [HIGH] CWE-788 CVE-2021-21082: Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corrup
Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that
nvd
CVE-2021-36065P3HIGHCVSS 7.8≥ 21.2.0, ≤ 21.2.10≥ 22.4.0, ≤ 22.4.3+1 more2021-09-01
CVE-2021-36065 [HIGH] CWE-122 CVE-2021-36065: Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by a heap-based
Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by a heap-based buffer overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-28271P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28271 [HIGH] CWE-416 CVE-2022-28271: Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by a use-after-fr
Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
nvd
CVE-2022-28277P3HIGHCVSS 7.8≤ 22.5.6≥ 23.0.0, ≤ 23.2.2+1 more2022-05-06
CVE-2022-28277 [HIGH] CWE-787 CVE-2022-28277: Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bou
Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
nvd
CVE-2021-36066P3HIGHCVSS 7.8≥ 21.2.0, ≤ 21.2.10≥ 22.4.0, ≤ 22.4.3+1 more2021-09-01
CVE-2021-36066 [HIGH] CWE-787 CVE-2021-36066: Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by an out-of-bo
Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52997P3HIGHCVSS 7.8v26.02024-12-10
CVE-2024-52997 [HIGH] CWE-416 CVE-2024-52997: Photoshop Desktop versions 26.0 and earlier are affected by a Use After Free vulnerability that coul
Photoshop Desktop versions 26.0 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-43760P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-43760 [HIGH] CWE-787 CVE-2024-43760: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-61819P3HIGHCVSS 7.8fixed in 26.92025-11-11
CVE-2025-61819 [HIGH] CWE-122 CVE-2025-61819: Photoshop Desktop versions 26.8.1 and earlier are affected by a Heap-based Buffer Overflow vulnerabi
Photoshop Desktop versions 26.8.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-45108P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-45108 [HIGH] CWE-787 CVE-2024-45108: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-45109P3HIGHCVSS 7.8fixed in 24.7.5≥ 25.0, < 25.122024-09-13
CVE-2024-45109 [HIGH] CWE-787 CVE-2024-45109: Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerab
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd