Medium severity5.5NVD Advisory· Published Apr 14, 2026· Updated Apr 16, 2026
CVE-2026-27286
CVE-2026-27286
Description
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products
1Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/indesign/apsb26-32.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.