VYPR
High severity8.6NVD Advisory· Published Jul 14, 2026· Updated Aug 28, 2026

CVE-2026-48350

CVE-2026-48350

Description

Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or directories outside the intended restrictions. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

Affected products

2
  • Adobe Inc./Animatellm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:*range: >=23.0.0,<23.0.16

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.