CVE-2026-80161: Acrobat Reader | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published Sep 8, 2026
·Updated
Acrobat Reader is affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Event History
Sep 8, 2026
CVE Published
via MITRE·08:30 PM
Data Sourced
via MITRE·08:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What must an attacker do to exploit this issue?
The attacker must provide a malicious file and persuade the victim to open it. Exploitation requires user interaction.
2
What level of access could successful exploitation provide?
Successful exploitation could execute arbitrary code in the context of the current user. The impact includes potential compromise of confidentiality, integrity, and availability at that user's privilege level.