VYPR
High severity7.8NVD Advisory· Published Feb 16, 2022· Updated Jun 17, 2026

CVE-2022-23188

CVE-2022-23188

Description

Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a crafted malicious file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted malicious file in Illustrator.

Affected products

3
  • unspecified+ 2 more
    • (no CPE)range: unspecified
    • (no CPE)range: <=25.4.3, <=26.0.2
    • cpe:2.3:a:adobe:illustrator:*:*:*:*:*:*:*:*range: <=25.4.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.