VendorsAdobeacrobatall versions
Vulnerabilities

Adobe Acrobat

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1414CVEs
CVE-2008-4816
Unspecified vulnerability in the Download Manager in Adobe Reader 8.1.2 and earlier on Windows allows remote attackers to change Internet Security options on a client machine via unknown vectors.
Published 2008-11-05 · Modified
4.3EPSS 0.023
CVE-2021-21061
Acrobat Pro DC Use-After-Free Vulnerability Could Lead to Information Disclosure
Published 2021-02-11 · Modified
4.3EPSS 0.021
CVE-2021-44739
Adobe Acrobat Reader DC add-on (AxAcroPDFLib.AxAcroPDF) src NTLMv2 SSO Auth leak vulnerability
Published 2022-01-14 · Modified
4.3EPSS 0.021
CVE-2021-44702
Adobe Acrobat Reader DC add-on (AxAcroPDFLib.AxAcroPDF) for Internet Explorer LoadFile NTLMv2 SSO Auth leak vulnerability
Published 2022-01-14 · Modified
4.3EPSS 0.021
CVE-2022-24101
Adobe Acrobat Reader DC Annotation Use-After-Free Information Disclosure Vulnerability
Published 2022-05-11 · Modified
4.3EPSS 0.019
CVE-2021-28557
Adobe Acrobat Reader out-of-bounds read in PDFLibTool could lead to information exposure
Published 2021-09-02 · Modified
4.3EPSS 0.018
CVE-2022-28268
Adobe Acrobat Reader DC Annotation Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2022-05-11 · Modified
4.3EPSS 0.018
CVE-2021-21046
Acrobat Reader DC Buffer Overflow Vulnerability Could Lead To Arbitrary Code Execution
Published 2021-02-11 · Modified
4.3EPSS 0.017
CVE-2025-54255
Acrobat Reader | Violation of Secure Design Principles (CWE-657)
Published 2025-09-09 · Analyzed
4.0EPSS 0.003
CVE-2026-80159
Acrobat Reader | Untrusted Search Path (CWE-426)
Published 2026-09-08 · Analyzed
4.0EPSS 0.002
CVE-2025-64787
Acrobat Reader | Improper Verification of Cryptographic Signature (CWE-347)
Published 2025-12-09 · Analyzed
3.3EPSS 0.004
CVE-2025-64786
Acrobat Reader | Improper Verification of Cryptographic Signature (CWE-347)
Published 2025-12-09 · Analyzed
3.3EPSS 0.004
CVE-2020-24439
Acrobat Reader DC for macOS Signature Validation Bypass
Published 2020-11-05 · Modified
2.8EPSS 0.006
CVE-2015-7829
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows mishandle junctions in the Synchronizer directory, which allows attackers to delete arbitrary files via Adobe Collaboration Sync, a related issue to CVE-2015-2428.
Published 2015-10-14 · Modified
1.9EPSS 0.011
← Prev36 / 36