Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.4
CVE-2026-19681: Adobe Security Center Command Injection Risk
CVE-2026-19681 · published 20 days ago
Summary
Adobe Security Center has a vulnerability that allows attackers to execute arbitrary commands on the system if a malicious file is uploaded. This could potentially lead to system compromise or data theft. Users should update to the latest version of Adobe Security Center to fix this issue.
What to do
- Update tenable, inc. security center to version 6.9.0 or later.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| tenable, inc. | security center | < 6.9.0 |
Original advisory text
An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially...
An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.
References
Severity
9.4
Critical
CVSS 3.1: 9.9 (NVD)
CVSS 4.0: 9.4 (NVD)
Exploitation
EPSS 8%
Type
CWE-78OS Command Injection
Timeline
Published14 Aug 2026
Updated29 Aug 2026
First seen14 Aug 2026
Monitor software like this
Free during beta