CVE-2026-21326: After Effects | Use After Free (CWE-416)
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21326?
CVE-2026-21326 is classified as a critical severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2026-21326?
To fix CVE-2026-21326, update to Adobe After Effects version 25.7 or later, which addresses this vulnerability.
What kind of vulnerability is CVE-2026-21326?
CVE-2026-21326 is a Use After Free vulnerability that can lead to arbitrary code execution.
Who is affected by CVE-2026-21326?
CVE-2026-21326 affects users of Adobe After Effects version 25.6 and earlier.
Is user interaction required to exploit CVE-2026-21326?
Yes, exploitation of CVE-2026-21326 requires user interaction, as a victim must open a malicious file.