Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.8
Adobe InDesign: Opening Malicious Files Can Crashes System or Steal Data
CVE-2026-34627
Summary
InDesign users may be at risk if they open a malicious file in Adobe InDesign. This could allow an attacker to take control of the user's system or steal sensitive information. Update to the latest version of InDesign to fix this issue.
Original title
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Explo...
Original description
InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd CVSS3.1
7.8
Vulnerability type
CWE-122
Heap-based Buffer Overflow
Published: 14 Apr 2026 · Updated: 14 Apr 2026 · First seen: 14 Apr 2026