CVE-2026-47918: Acrobat Reader | Use After Free (CWE-416)
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Prevent exploitation by restricting user exposure to malicious PDFs: block or scan PDF attachments at the email gateway and web proxy, quarantine or strip suspicious PDFs, and restrict opening PDFs from untrusted sources or external storage.
- Operational
Inform and train users that exploitation requires opening a malicious PDF; advise users not to open unexpected or untrusted PDF attachments or files and to report suspicious files to IT/security for analysis.
- Operational
Monitor Adobe security advisories for this issue and apply vendor-supplied updates or patches for Acrobat Reader as soon as they are released; verify and deploy fixes promptly across affected systems.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47918?
CVE-2026-47918 has a high severity rating of 7.8.
How do I fix CVE-2026-47918?
To fix CVE-2026-47918, update Adobe Acrobat Reader to the latest version released after the vulnerability was acknowledged.
What types of systems are impacted by CVE-2026-47918?
CVE-2026-47918 affects Adobe Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier.
What can happen if CVE-2026-47918 is exploited?
Exploitation of CVE-2026-47918 can lead to arbitrary code execution in the context of the affected user.
Does CVE-2026-47918 require user interaction for exploitation?
Yes, exploitation of CVE-2026-47918 requires the victim to open a malicious file.