CVE-2026-80160: Acrobat Reader | Out-of-bounds Read (CWE-125)
Published Sep 8, 2026
·Updated
Acrobat Reader is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
6 affected components
Adobe Acrobat Reader
All of the following
Any of the following
Adobe Acrobat>=24.001.20604<24.001.30429
Adobe Acrobat DC>=15.008.20082<26.002.21901
Adobe Acrobat Reader DC>=15.008.20082<26.002.21901
Any of the following
Apple macOS
Microsoft Windows
Event History
Sep 8, 2026
CVE Published
via MITRE·08:30 PM
Data Sourced
via MITRE·08:30 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:18 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
Who is exposed to exploitation of this issue?
Users of Adobe Acrobat Reader who open a malicious file are exposed. The attack requires local access and user interaction; the victim must open the attacker-controlled file.
2
What could an attacker gain from successful exploitation?
Successful exploitation could disclose sensitive information from memory. The provided data does not indicate integrity or availability impact.