VendorsAdobeacrobat_readerany version
Vulnerabilities

Adobe Acrobat Reader any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

766CVEs
CVE-2024-49532
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-10 · Analyzed
5.5EPSS 0.005
CVE-2024-49533
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-10 · Analyzed
5.5EPSS 0.005
CVE-2024-49534
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-10 · Analyzed
5.5EPSS 0.005
CVE-2025-43578
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-06-10 · Analyzed
5.5EPSS 0.005
CVE-2024-34101
ZDI-CAN-23614: Adobe Acrobat Reader DC PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2024-05-15 · Analyzed
5.5EPSS 0.005
CVE-2024-30302
ZDI-CAN-23077: Adobe Acrobat Reader DC AcroForm Use-After-Free Information Disclosure Vulnerability
Published 2024-05-02 · Analyzed
5.5EPSS 0.004
CVE-2021-39859
Use After Free Adobe Acrobat Pro DC [HB-21-0339]
Published 2023-09-06 · Modified
5.5EPSS 0.004
CVE-2025-24431
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-03-11 · Analyzed
5.5EPSS 0.004
CVE-2025-27163
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-03-11 · Analyzed
5.5EPSS 0.004
CVE-2025-47112
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-06-10 · Analyzed
5.5EPSS 0.004
CVE-2025-27164
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-03-11 · Analyzed
5.5EPSS 0.004
CVE-2023-38245
Adobe Acrobat Reader DC ActiveX Control (AxAcroPDFLib.AxAcroPDF) src NTLMv2 SSO Hash Theft Vulnerability
Published 2023-08-10 · Modified
5.5EPSS 0.004
CVE-2022-35669
Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2022-07-27 · Modified
5.5EPSS 0.003
CVE-2022-34238
Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-09-11 · Modified
5.5EPSS 0.003
CVE-2025-47111
Acrobat Reader | NULL Pointer Dereference (CWE-476)
Published 2025-06-10 · Analyzed
5.5EPSS 0.003
CVE-2024-45107
ZDI-CAN-24186: Adobe Acrobat Reader DC Doc Object Use-After-Free Information Disclosure Vulnerability
Published 2024-09-05 · Analyzed
5.5EPSS 0.003
CVE-2022-44519
Acrobat Reader | Use After Free (CWE-416)
Published 2024-12-18 · Analyzed
5.5EPSS 0.003
CVE-2021-40723
Acrobat Reader DC Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-09-07 · Modified
5.5EPSS 0.003
CVE-2024-49531
Acrobat Reader | NULL Pointer Dereference (CWE-476)
Published 2024-12-10 · Analyzed
5.5EPSS 0.003
CVE-2024-34130
Acrobat Android : OverSecured Finding : Access to arbitrary* content providers via insecure Intent configuration
Published 2024-06-13 · Modified
5.5EPSS 0.003
CVE-2022-44515
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-18 · Analyzed
5.5EPSS 0.003
CVE-2022-44516
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-18 · Analyzed
5.5EPSS 0.003
CVE-2022-44517
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2024-12-18 · Analyzed
5.5EPSS 0.003
CVE-2026-47961
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2026-06-09 · Analyzed
5.5EPSS 0.003
CVE-2025-43579
Acrobat Reader | Information Exposure (CWE-200)
Published 2025-06-10 · Analyzed
5.5EPSS 0.002
CVE-2021-28559
Adobe Acrobat Reader privacy violation vulnerability could lead to privilege escalation
Published 2021-09-02 · Modified
5.3EPSS 0.016
CVE-2009-3462
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 on Unix, when Debug mode is enabled, allow attackers to execute arbitrary code via unspecified vectors, related to a "format bug."
Published 2009-10-19 · Modified
5.1EPSS 0.060
CVE-2007-0048
Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, when used with Internet Explorer, Google Chrome, or Opera, allows remote attackers to cause a denial of service (memory consumption) via a long sequence of # (hash) characters appended to a PDF URL, related to a "cross-site scripting issue."
Published 2007-01-03 · Modified
5.0EPSS 0.326
CVE-2009-3957
Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allow attackers to cause a denial of service (NULL pointer dereference) via unspecified vectors.
Published 2010-01-13 · Modified
5.0EPSS 0.048
CVE-2015-6700
The setBackground function in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to obtain sensitive information from process memory via invalid arguments, a different vulnerability than CVE-2015-6697, CVE-2015-6699, CVE-2015-6701, CVE-2015-6702, CVE-2015-6703, and CVE-2015-6704.
Published 2015-10-14 · Modified
5.0EPSS 0.047
CVE-2014-8450
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2015-4449, CVE-2015-4450, CVE-2015-5088, CVE-2015-5089, and CVE-2015-5092.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-4449
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2014-8450, CVE-2015-4450, CVE-2015-5088, CVE-2015-5089, and CVE-2015-5092.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-4450
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2014-8450, CVE-2015-4449, CVE-2015-5088, CVE-2015-5089, and CVE-2015-5092.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-5088
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2014-8450, CVE-2015-4449, CVE-2015-4450, CVE-2015-5089, and CVE-2015-5092.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-5089
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2014-8450, CVE-2015-4449, CVE-2015-4450, CVE-2015-5088, and CVE-2015-5092.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-5092
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2014-8450, CVE-2015-4449, CVE-2015-4450, CVE-2015-5088, and CVE-2015-5089.
Published 2015-07-15 · Modified
5.0EPSS 0.046
CVE-2015-6692
Buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to obtain sensitive information via unspecified vectors.
Published 2015-10-14 · Modified
5.0EPSS 0.034
CVE-2015-6705
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2015-5583, CVE-2015-6706, and CVE-2015-7624.
Published 2015-10-14 · Modified
5.0EPSS 0.031
CVE-2015-6706
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2015-5583, CVE-2015-6705, and CVE-2015-7624.
Published 2015-10-14 · Modified
5.0EPSS 0.031
CVE-2015-7624
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2015-5583, CVE-2015-6705, and CVE-2015-6706.
Published 2015-10-14 · Modified
5.0EPSS 0.031
← Prev18 / 20Next →