Adobe Monthly Security Update (October 2025)
Release Date: 15 Oct 2025
RISK: Medium Risk
TYPE: Clients - Productivity Products
Adobe has released monthly security update for their products:
| Vulnerable Product | Risk Level | Impacts | Notes | Details (including CVE) |
| Adobe Connect | Medium Risk | Cross-site Scripting Remote Code Execution Security Restriction Bypass | APSB25-70 | |
| Adobe Commerce | Medium Risk | Security Restriction Bypass Cross-site Scripting Elevation of Privilege Remote Code Execution | APSB25-94 | |
| Adobe Creative Cloud Desktop Application | Medium Risk | Data Manipulation | APSB25-95 | |
| Adobe Bridge | Medium Risk | Remote Code Execution Information Disclosure | APSB25-96 | |
| Adobe Animate | Medium Risk | Remote Code Execution Information Disclosure | APSB25-97 | |
| Adobe Experience Manager Screens | Medium Risk | Cross-site Scripting Remote Code Execution | APSB25-98 | |
| Substance 3D Viewer | Medium Risk | Remote Code Execution Denial of Service | APSB25-99 | |
| Substance 3D Modeler | Medium Risk | Remote Code Execution | APSB25-100 | |
| Adobe FrameMaker | Medium Risk | Remote Code Execution | APSB25-101 | |
| Adobe Illustrator | Medium Risk | Remote Code Execution | APSB25-102 | |
| Adobe Dimension | Medium Risk | Remote Code Execution | APSB25-103 | |
| Substance 3D Stager | Medium Risk | Remote Code Execution | APSB25-104 |
Number of 'Extremely High Risk' product(s): 0
Number of 'High Risk' product(s): 0
Number of 'Medium Risk' product(s): 12
Number of 'Low Risk' product(s): 0
Evaluation of overall 'Risk Level': Medium Risk
Impact
- Remote Code Execution
- Denial of Service
- Data Manipulation
- Security Restriction Bypass
- Information Disclosure
- Elevation of Privilege
- Cross-Site Scripting
System / Technologies affected
- Adobe Connect 12.9 and earlier versions
- Adobe Commerce 2.4.9-alpha2 and earlier versions
- Adobe Commerce B2B 1.5.3-alpha2 and earlier versions
- Magento Open Source 2.4.9-alpha2 and earlier versions
- Creative Cloud Desktop Application 6.7.0.278 and earlier versions
- Adobe Bridge 14.1.8 (LTS) and earlier versions
- Adobe Bridge 15.1.1 and earlier versions
- Adobe Animate 2023 23.0.13 and earlier versions
- Adobe Animate 2024 24.0.10 and earlier versions
- Adobe Experience Manager (AEM) Screens AEM 6.5.22 Screens FP11.6
- Adobe Substance 3D Viewer 0.25.2 and earlier versions
- Adobe Substance 3D Modeler 1.22.3 and earlier versions
- Adobe FrameMaker 2020 Release Update 9 and earlier versions
- Adobe FrameMaker 2022 Release Update 7 and earlier versions
- Illustrator 2025 29.7 and earlier versions
- Illustrator 2024 28.7.9 and earlier versions
- Adobe Dimension 4.1.4 and earlier versions
- Adobe Substance 3D Stager 3.1.4 and earlier versions
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor. Please refer to 'Details' column in the above table for details of individual product update or run software update.

沒有留言:
發佈留言