CVE-2026-81993 PUBLISHED

Acrobat Reader | Heap-based Buffer Overflow (CWE-122)

Assigner: adobe
Reserved: 27.08.2026 Published: 08.09.2026 Updated: 08.09.2026

Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS Score: 5.5

Product Status

Vendor Adobe
Product Adobe Acrobat
Versions Default: unaffected
  • affected from 0 to 26.002.21900 (incl.)
  • Version 26.002.21901 is unaffected
Vendor Adobe
Product Acrobat Reader
Versions Default: unaffected
  • affected from 0 to 26.002.21900 (incl.)
  • Version 26.002.21901 is unaffected
Vendor Adobe
Product Acrobat 2024
Versions Default: unaffected
  • affected from 0 to 24.001.30383 (incl.)
  • Version 24.001.30429 is unaffected

References

Problem Types

  • Heap-based Buffer Overflow (CWE-122) CWE