Medium severity5.5NVD Advisory· Published Apr 14, 2026· Updated Apr 16, 2026
CVE-2026-27286
CVE-2026-27286
Description
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- helpx.adobe.com/security/products/indesign/apsb26-32.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.