2026年4月13日星期一

Adobe Acrobat Remote Code Execution Vulnerability

Adobe Acrobat Remote Code Execution Vulnerability

Release Date: 13 Apr 2026

RISK: High Risk

TYPE: Clients - Productivity Products

A vulnerability was identified in Adobe Acrobat. A remote attacker could exploit this vulnerability to trigger remote code execution on the targeted system.

 

Note:

CVE-2026-34621 is being exploited in the wild. It was affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Hence, the risk level is rated as High Risk.


Impact

  • Remote Code Execution

System / Technologies affected

  • Acrobat DC: version 26.001.21367 and earlier
  • Acrobat Reader DC: version 26.001.21367 and earlier

  • Acrobat 2024: version 24.001.30356 and earlier


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

 

Update to:

  • Acrobat DC: version 26.001.21411 or later

  • Acrobat Reader DC: version 26.001.21411 or later

  • Acrobat 2024 (for macOS): version 24.001.30360 or later

  • Acrobat 2024 (for Windows): version 24.001.30362 or later


Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

GitLab 多個漏洞

GitLab 多個漏洞 發佈日期: 2026年08月19日 於 GitLab 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發資料篡改及繞過保安限制。 影響 繞過保安限制 篡改 受影響之系統或技術 GitLab Community Edition (CE) 19.2.4, ...