CVE-2026-79904: Photoshop Mobile | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)
Photoshop Mobile is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to access unauthorized files or directories outside the intended restrictions. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What level of access and interaction does exploitation require?
An attacker needs low-privileged access and must convince a victim to open a malicious file. Exploitation also depends on conditions beyond the attacker’s control.
What is the potential impact if the issue is exploited?
Successful exploitation could bypass a security feature and allow access to unauthorized files or directories outside the intended restrictions.