CVE-2026-48405: Lightroom Classic | Out-of-bounds Write (CWE-787)
Published Aug 11, 2026
·Updated
Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
1 affected component
Adobe Lightroom Classic
Event History
Aug 11, 2026
CVE Published
via MITRE·05:45 PM
Data Sourced
via MITRE·05:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-48405?
The severity of CVE-2026-48405 is high, with a CVSS score of 7.8.
2
How do I fix CVE-2026-48405?
To fix CVE-2026-48405, ensure that you update Adobe Lightroom Classic to the latest patched version.
3
What potential impact does CVE-2026-48405 have?
CVE-2026-48405 can result in arbitrary code execution if exploited, allowing an attacker to take control of the affected system.
4
Is user interaction required to exploit CVE-2026-48405?
Yes, exploitation of CVE-2026-48405 requires user interaction, specifically opening a malicious file.
5
Which software is affected by CVE-2026-48405?
CVE-2026-48405 affects Adobe Lightroom Classic.