# CVE-2026-76191

## Summary

- **CVE ID:** CVE-2026-76191
- **Severity:** HIGH
- **CVSS Score:** 8.2 (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H)
- **CWE:** CWE-94
- **Published:** Sep 8, 2026
- **Last Modified:** Sep 9, 2026

## Description

Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

## Affected Products

- Adobe — Adobe Animate 2023 (0)
- Adobe — Adobe Animate 2023 (23.0.17)
- Adobe — Adobe Animate 2024 (0)
- Adobe — Adobe Animate 2024 (24.0.15)

## References

- [CNA](https://helpx.adobe.com/security/products/animate/apsb26-132.html)

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-09._