CVE-2026-34662 PUBLISHED

Illustrator | NULL Pointer Dereference (CWE-476)

Assigner: adobe
Reserved: 30.03.2026 Published: 12.05.2026 Updated: 12.05.2026

Illustrator versions 29.8.6, 30.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Metrics

CVSS Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
CVSS Score: 5.5

Product Status

Vendor Adobe
Product Illustrator
Versions Default: affected
  • affected from 0 to 30.3 (incl.)

References

Problem Types

  • NULL Pointer Dereference (CWE-476) CWE