CVE-2026-21362: Illustrator | Out-of-bounds Write (CWE-787)
Illustrator versions 29.8.4, 30.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21362?
CVE-2026-21362 has a critical severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2026-21362?
To mitigate CVE-2026-21362, users should update Adobe Illustrator to version 30.2 or later.
What versions of Illustrator are affected by CVE-2026-21362?
CVE-2026-21362 affects Adobe Illustrator versions 29.8.4 and 30.1 and earlier.
What is an out-of-bounds write vulnerability as seen in CVE-2026-21362?
An out-of-bounds write vulnerability, like CVE-2026-21362, occurs when a program writes data outside the intended memory boundaries, potentially leading to arbitrary code execution.
Does exploiting CVE-2026-21362 require user interaction?
Yes, exploitation of CVE-2026-21362 requires user interaction from a victim.