CVE-2026-47963: DNG SDK | Out-of-bounds Read (CWE-125)
Published Jun 16, 2026
·Updated
DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
2 affected components
Adobe DNG SDK<=1.7.1 2536
Adobe DNG Software Development Kit<1.7.1.2611
Event History
Jun 16, 2026
CVE Published
via MITRE·04:32 PM
Data Sourced
via MITRE·04:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-47963?
CVE-2026-47963 has a medium severity rating of 5.5.
2
What does CVE-2026-47963 affect?
CVE-2026-47963 affects Adobe DNG SDK versions 1.7.1 2536 and earlier.
3
How do I fix CVE-2026-47963?
To fix CVE-2026-47963, update Adobe DNG SDK to the latest version available.
4
What type of vulnerability is CVE-2026-47963?
CVE-2026-47963 is an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
5
What is required for the exploitation of CVE-2026-47963?
Exploitation of CVE-2026-47963 requires user interaction from the victim.