Description
Photoshop Desktop is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS breakdown
CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected products
- Adobe / Photoshop26.0 – 26.11.7
- Adobe / Photoshop 20250 – 26.11.6
- Adobe / Photoshop 202526.11.7 – 26.11.7
- Adobe / Photoshop 20260 – 27.6
- Adobe / Photoshop 202627.7 – 27.7
References
Updated 38m ago · 8 sources