High severity7.8NVD Advisory· Published Sep 10, 2020· Updated Jun 17, 2026
CVE-2020-9731
CVE-2020-9731
Description
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious indd file could be abused to cause an out-of-bounds memory access, potentially resulting in code execution in the context of the current user.
Affected products
3cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*range: <=15.1.1
- (no CPE)range: <=15.1.1
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/indesign/apsb20-52.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.