2026年4月15日星期三

Adobe Monthly Security Update (April 2026)

Adobe Monthly Security Update (April 2026)

Release Date: 15 Apr 2026

RISK: Medium Risk

TYPE: Clients - Productivity Products

Adobe has released monthly security update for their products:

 

Vulnerable ProductRisk LevelImpactsNotesDetails (including CVE)
Adobe Acrobat ReaderMedium Risk Medium RiskRemote Code Execution
Information Disclosure
 APSB26-44
Adobe InDesignMedium Risk Medium Risk

Remote Code Execution

Information Disclosure
Denial of Service

 APSB26-32
Adobe InCopyMedium Risk Medium RiskRemote Code Execution APSB26-33
Adobe Experience Manager (AEM) ScreensMedium Risk Medium RiskCross-site Scripting
Remote Code Execution
 APSB26-34
Adobe FrameMakerMedium Risk Medium RiskRemote Code Execution
Information Disclosure
 APSB26-36
Adobe ConnectMedium Risk Medium RiskRemote Code Execution
Cross-site Scripting
Elevation of Privilege
 APSB26-37
Adobe ColdFusionMedium Risk Medium RiskSecurity Restriction Bypass
Remote Code Execution
Information Disclosure
Denial of Service
 APSB26-38
Adobe BridgeMedium Risk Medium RiskRemote Code Execution
Denial of Service
 APSB26-39
Adobe PhotoshopMedium Risk Medium RiskRemote Code Execution APSB26-40
Adobe DNG Software Development Kit (SDK)Medium Risk Medium Risk

Information Disclosure

Denial of Service

 APSB26-41
Adobe IllustratorMedium Risk Medium RiskRemote Code Execution APSB26-42

 

Number of 'Extremely High Risk' product(s): 0

Number of 'High Risk' product(s): 0

Number of 'Medium Risk' product(s): 11

Number of 'Low Risk' product(s): 0

Evaluation of overall 'Risk Level': Medium Risk


Impact

  • Remote Code Execution
  • Denial of Service
  • Information Disclosure
  • Security Restriction Bypass
  • Elevation of Privilege
  • Cross-Site Scripting

System / Technologies affected

  • Acrobat DC 26.001.21411 and earlier versions
  • Acrobat Reader DC 26.001.21411 and earlier versions
  • Acrobat 2024 Win: 24.001.30362 and earlier versions
  • Acrobat 2024 Mac: 24.001.30360 and earlier versions
  • Adobe InDesign ID21.2 and earlier versions
  • Adobe InDesign ID20.5.2 and earlier versions
  • Adobe InCopy  21.2 and earlier versions
  • Adobe InCopy  20.5.2 and earlier versions
  • Adobe Experience Manager (AEM) Screens 6.5 Service Pack 24 or earlier
  • Adobe Experience Manager (AEM) Screens Feature Pack 11.7 or earlier
  • Adobe FrameMaker 2022 Release Update 8 and earlier versions
  • Adobe Connect 12.10 and earlier versions
  • Adobe Connect Desktop Application 2025.3 and earlier versions
  • ColdFusion 2025 Update 6 and earlier versions
  • ColdFusion 2023 Update 18 and earlier versions
  • Adobe Bridge  15.1.4 (LTS) and earlier versions
  • Adobe Bridge  16.0.2 and earlier versions
  • Photoshop 2026 27.4 and earlier versions
  • Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2502 and earlier versions
  • Illustrator 2025 29.8.5 and earlier versions
  • Illustrator 2026 30.2 and earlier versions

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  • Apply fixes issued by the vendor. Please refer to 'Details' column in the above table for details of individual product update or run software update.

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

Adobe 每月保安更新 (2026年4月)

Adobe 每月保安更新 (2026年4月) 發佈日期: 2026年04月15日 風險: 中度風險 類型: 用戶端 - 辦公室應用 Adobe已為產品提供本月保安更新:   受影響產品 風險程度 影響 備註 詳情(包括 CVE) ...