2026年3月11日星期三

Adobe Monthly Security Update (March 2026)

Adobe Monthly Security Update (March 2026)

Release Date: 11 Mar 2026

RISK: Medium Risk

TYPE: Clients - Productivity Products

Adobe has released monthly security update for their products:

 

Vulnerable ProductRisk LevelImpactsNotesDetails (including CVE)
Adobe CommerceMedium Risk Medium RiskCross-site Scripting
Elevation of Privilege
Security Restriction Bypass
Remote Code Execution
Information Disclosure
Denial of Service
 APSB26-05
Adobe IllustratorMedium Risk Medium RiskRemote Code Execution
Denial of Service
 APSB26-18
Substance 3D PainterMedium Risk Medium RiskDenial of Service
Remote Code Execution
 APSB26-25
Adobe Acrobat ReaderMedium Risk Medium RiskRemote Code Execution
Elevation of Privilege
 APSB26-26
Adobe Premiere ProMedium Risk Medium RiskRemote Code Execution APSB26-28
Adobe Experience ManagerMedium Risk Medium RiskCross-site Scripting
Remote Code Execution
 APSB26-24
Substance 3D StagerMedium Risk Medium RiskRemote Code Execution APSB26-29
Adobe DNG Software Development Kit (SDK)Medium Risk Medium RiskRemote Code Execution
Denial of Service
 APSB26-30

 

Number of 'Extremely High Risk' product(s): 0

Number of 'High Risk' product(s): 0

Number of 'Medium Risk' product(s): 8

Number of 'Low Risk' product(s): 0

Evaluation of overall 'Risk Level': Medium Risk


Impact

  • Remote Code Execution
  • Denial of Service
  • Information Disclosure
  • Cross-Site Scripting
  • Elevation of Privilege
  • Security Restriction Bypass

System / Technologies affected

  • Adobe Commerce 2.4.9-alpha3 and earlier versions
  • Adobe Commerce 2.4.8‑p3 and earlier versions
  • Adobe Commerce 2.4.7-p8 and earlier versions
  • Adobe Commerce 2.4.6-p13 and earlier versions
  • Adobe Commerce 2.4.5-p15 and earlier versions
  • Adobe Commerce 2.4.4-p16 and earlier versions
  • Adobe Commerce B2B 1.5.3-alpha3 and earlier versions
  • Adobe Commerce B2B 1.5.2‑p3 and earlier versions
  • Adobe Commerce B2B 1.4.2-p8 and earlier versions
  • Adobe Commerce B2B 1.3.5-p13 and earlier versions
  • Adobe Commerce B2B 1.3.4-p15 and earlier versions
  • Adobe Commerce B2B 1.3.3-p16 and earlier versions
  • Magento Open Source 2.4.9-alpha3
  • Magento Open Source 2.4.8-p3 and earlier versions
  • Magento Open Source 2.4.7-p8 and earlier versions
  • Magento Open Source 2.4.6-p13 and earlier versions
  • Magento Open Source 2.4.5-p15 and earlier versions
  • Illustrator 2025 29.8.4 and earlier versions
  • Illustrator 2026 30.1 and earlier versions
  • Adobe Substance 3D Painter 11.1.2 and earlier versions
  • Acrobat DC 25.001.21265 and earlier versions
  • Acrobat Reader DC 25.001.21265 and earlier versions
  • Acrobat 2024 Win - 24.001.30307 and earlier versions
  • Acrobat 2024 Mac - 24.001.30308 and earlier versions
  • Adobe Premiere Pro 25.5 and earlier versions
  • Adobe Experience Manager (AEM) AEM Cloud Service (CS)
  • Adobe Experience Manager (AEM) 6.5 LTS SP1 and earlier versions
  • Adobe Experience Manager (AEM) 6.5.SP23 and earlier versions
  • Adobe Substance 3D Stager 3.1.7 and earlier versions
  • Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2471 and earlier versions

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  • Apply fixes issued by the vendor. Please refer to 'Details' column in the above table for details of individual product update or run software update.

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

微軟每月保安更新 (2026年3月)

微軟每月保安更新 (2026年3月) 發佈日期: 2026年03月14日 風險: 中度風險 類型: 操作系統 - 視窗操作系統 微軟已為產品提供本月保安更新:   受影響產品 風險程度 影響 備註 SQL Server 中度風險 ...