CVE-2026-21327: After Effects | Out-of-bounds Write (CWE-787)
After Effects versions 25.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21327?
CVE-2026-21327 is classified as a high severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2026-21327?
To mitigate CVE-2026-21327, upgrade Adobe After Effects to version 25.7 or later.
What effect does CVE-2026-21327 have on my system?
CVE-2026-21327 can allow an attacker to execute arbitrary code in the context of the user if exploited.
Is user interaction required to exploit CVE-2026-21327?
Yes, exploitation of CVE-2026-21327 requires user interaction, specifically the user must open a malicious file.
Which versions of Adobe After Effects are affected by CVE-2026-21327?
Adobe After Effects versions 25.6 and earlier are affected by CVE-2026-21327.