CVE-2026-34626: Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)
Acrobat Reader versions 26.001.21411, 24.001.30360, 24.001.30362 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could result in arbitrary file system read in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-34626?
CVE-2026-34626 has been classified as a high severity vulnerability due to its potential impact on object prototype attributes.
How do I fix CVE-2026-34626?
To remediate CVE-2026-34626, users should update Adobe Acrobat Reader to the latest version that resolves the vulnerability.
What versions of Acrobat Reader are affected by CVE-2026-34626?
Adobe Acrobat Reader versions 26.001.21411, 24.001.30360, and 24.001.30362 and earlier are affected by CVE-2026-34626.
What types of issues does CVE-2026-34626 cause?
CVE-2026-34626 allows for improperly controlled modification of object prototype attributes, leading to potential security risks.
Is CVE-2026-34626 related to any other vulnerabilities?
While CVE-2026-34626 specifically addresses prototype pollution, it's important to regularly check for related vulnerabilities in software components and dependencies.