High severity8.6NVD Advisory· Published Apr 15, 2026· Updated Jul 29, 2026
CVE-2026-34632
CVE-2026-34632
Description
Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in the context of the current user. An attacker could have exploited this vulnerability by placing a malicious library in a directory searched by the installer. Exploitation of this issue required user interaction in that a victim must have been running the installer. Scope is changed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:adobe:photoshop_installer:2.11.0.30:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:adobe:photoshop_installer:2.11.0.30:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- www.talosintelligence.com/vulnerability_reports/TALOS-2025-2274nvdExploitThird Party Advisory
- cwe.mitre.org/data/definitions/427.htmlnvdTechnical Description
News mentions
1- TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilitiesCisco Talos Intelligence · May 19, 2026