CVE-2026-48408: Lightroom Classic | Out-of-bounds Write (CWE-787)
Published Aug 11, 2026
·Updated
Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
1 affected component
Lightroom Classic
Event History
Aug 11, 2026
CVE Published
via MITRE·05:45 PM
Data Sourced
via MITRE·05:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-48408?
The severity of CVE-2026-48408 is rated as high with a score of 7.8.
2
How do I fix CVE-2026-48408?
To fix CVE-2026-48408, ensure that you update Lightroom Classic to the latest version as provided by Adobe.
3
What is the impact of CVE-2026-48408?
CVE-2026-48408 can lead to arbitrary code execution in the context of the current user.
4
What type of vulnerability is CVE-2026-48408?
CVE-2026-48408 is classified as an out-of-bounds write vulnerability (CWE-787).
5
Does CVE-2026-48408 require user interaction for exploitation?
Yes, exploitation of CVE-2026-48408 requires user interaction, as it involves opening a malicious file.