CVE-2026-47955: Acrobat Reader | Use After Free (CWE-416)
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Block, quarantine or scan incoming PDF attachments at email gateways and perimeter security (AV/IPS/secure email) to prevent delivery of potentially malicious PDFs that require a user to open them.
- Compensating control
Disable automatic preview or automatic opening of PDF attachments in email clients and document management systems; require users to download and scan PDFs before opening.
- Operational
Advise and train users to not open unsolicited or untrusted PDF files or links and to report suspicious files to security staff for analysis.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47955?
CVE-2026-47955 has a high severity score of 7.8.
What does CVE-2026-47955 vulnerability involve?
CVE-2026-47955 is a Use After Free vulnerability in Adobe Acrobat Reader that could allow arbitrary code execution.
How can I mitigate CVE-2026-47955?
To mitigate CVE-2026-47955, it is recommended to update Adobe Acrobat Reader to the latest version.
What is required for the exploitation of CVE-2026-47955?
Exploitation of CVE-2026-47955 requires user interaction, specifically opening a malicious file.
Which versions of Adobe Acrobat Reader are affected by CVE-2026-47955?
Adobe Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by CVE-2026-47955.