Adobe
7,320 CVEs tracked since 1999. Since Aug 2021, 14 of them reached CISA KEV.
Adobe CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2021-08 | 79 | 0 |
| 2021-09 | 149 | 1 |
| 2021-10 | 14 | 0 |
| 2021-11 | 45 | 0 |
| 2021-12 | 29 | 0 |
| 2022-01 | 48 | 0 |
| 2022-02 | 22 | 1 |
| 2022-03 | 54 | 0 |
| 2022-04 | 6 | 0 |
| 2022-05 | 97 | 0 |
| 2022-06 | 47 | 0 |
| 2022-07 | 34 | 0 |
| 2022-08 | 27 | 0 |
| 2022-09 | 66 | 0 |
| 2022-10 | 34 | 0 |
| 2022-11 | null or fewer | |
| 2022-12 | 39 | 0 |
| 2023-01 | 31 | 1 |
| 2023-02 | 28 | 0 |
| 2023-03 | null or fewer | |
| 2023-04 | 57 | 0 |
| 2023-05 | 14 | 0 |
| 2023-06 | 18 | 0 |
| 2023-07 | 22 | 3 |
| 2023-08 | 37 | 0 |
| 2023-09 | 65 | 2 |
| 2023-10 | 13 | 0 |
| 2023-11 | 77 | 0 |
| 2023-12 | 220 | 0 |
| 2024-01 | 10 | 0 |
| 2024-02 | 31 | 0 |
| 2024-03 | 56 | 1 |
| 2024-04 | 29 | 0 |
| 2024-05 | 45 | 0 |
| 2024-06 | 167 | 1 |
| 2024-07 | 13 | 0 |
| 2024-08 | 90 | 0 |
| 2024-09 | 29 | 0 |
| 2024-10 | 54 | 0 |
| 2024-11 | 57 | 0 |
| 2024-12 | 177 | 0 |
| 2025-01 | 16 | 0 |
| 2025-02 | 51 | 0 |
| 2025-03 | 43 | 0 |
| 2025-04 | 52 | 0 |
| 2025-05 | 40 | 0 |
| 2025-06 | 260 | 0 |
| 2025-07 | 73 | 0 |
| 2025-08 | 79 | 1 |
| 2025-09 | 24 | 1 |
| 2025-10 | 36 | 0 |
| 2025-11 | 29 | 0 |
| 2025-12 | 137 | 0 |
| 2026-01 | 25 | 0 |
| 2026-02 | 44 | 0 |
| 2026-03 | 82 | 0 |
| 2026-04 | 57 | 1 |
| 2026-05 | 52 | 0 |
| 2026-06 | 145 | 0 |
| 2026-07 | 107 | 0 |
| 2026-08 | 101 | 0 |
| 2026-09 | 171 | 1 |
Products
The products that kept showing up in Adobe's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Adobe.
- CVE-2026-84395Premiere Pro | Server-Side Request Forgery (SSRF) (CWE-918)7.1
- CVE-2026-83963Substance3D - Modeler | Out-of-bounds Write (CWE-787)7.8
- CVE-2026-81998Substance3D - Modeler | Out-of-bounds Write (CWE-787)7.8
- CVE-2026-83962Substance3D - Modeler | Stack-based Buffer Overflow (CWE-121)7.8
- CVE-2026-79906Substance3D - Modeler | Out-of-bounds Write (CWE-787)7.8
- CVE-2026-75743Adobe Experience Manager Forms JEE | Cross-Site Request Forgery (CSRF) (CWE-352)7.1
- CVE-2026-75745Adobe Experience Manager Forms JEE | Incorrect Authorization (CWE-863)10.0
- CVE-2026-82000Adobe Experience Manager Forms JEE | Server-Side Request Forgery (SSRF) (CWE-918)9.6
- CVE-2026-75744Adobe Experience Manager Forms JEE | Cross-site Scripting (Stored XSS) (CWE-79)8.1
- CVE-2026-81995Adobe Experience Manager Forms JEE | Improper Input Validation (CWE-20)9.1
- CVE-2026-81999Adobe Experience Manager Forms JEE | Server-Side Request Forgery (SSRF) (CWE-918)8.7
- CVE-2026-75689Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79)9.3
- CVE-2026-83964Adobe Connect | Improper Certificate Validation (CWE-295)6.2
- CVE-2026-34689Adobe Connect | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)8.6
- CVE-2026-75682Adobe Connect | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89)9.9
The record
- Peak rank
- #1 in Dec 2023
- Busiest month shown
- Jun 2025, 260 CVEs
- Months with a KEV entry
- 11 since Aug 2021
- Monthly snapshots
- 230 since 1999