Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.8

CVE-2024-47442: Adobe After Effects: Malicious File Can Run Code on Your Computer

CVE-2024-47442
Summary

If you use Adobe After Effects, be aware that certain versions have a security flaw that could allow a hacker to run code on your computer if you open a bad file. This requires you to interact with the file, such as opening it or clicking on it. To stay safe, update to the latest version of After Effects.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
adobe after_effects <= 23.6.9
>= 24.0, < 24.6.3
cpe:2.3:a:adobe:after_effects:*:*:*:*:*:*:*:*
Original title
After Effects versions 23.6.9, 24.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation...
Original description
After Effects versions 23.6.9, 24.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd CVSS3.1 7.8
Vulnerability type
CWE-787 Out-of-bounds Write
Published: 12 Nov 2024 · Updated: 15 Jun 2026 · First seen: 7 Mar 2026