CVE-2026-79907
Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Scoring
- Severity
- HIGH
- CVSS base score
- 7.8
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- CWE
- CWE-415
- Published
- 2026-09-08
- Last modified
- 2026-09-09
Affected products
- Adobe Adobe Acrobat
- Adobe Adobe Acrobat
- Adobe Acrobat Reader
- Adobe Acrobat Reader
- Adobe Acrobat 2024
- Adobe Acrobat 2024
Weakness type
Related vulnerabilities
- CVE-2026-87585 — Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote...
- CVE-2026-81950 — Microsoft Excel Remote Code Execution Vulnerability
- CVE-2026-80080 — Microsoft Office Word Remote Code Execution Vulnerability
- CVE-2026-69309 — Windows Print Spooler Components Elevation of Privilege Vulnerability
- CVE-2026-70567 — Windows Display Enhancement Service Elevation of Privilege Vulnerability
- CVE-2026-69725 — Windows Hello Elevation of Privilege Vulnerability
- CVE-2026-69876 — Windows DHCP Server Remote Code Execution Vulnerability
- CVE-2026-69398 — Windows Bluetooth Service Elevation of Privilege Vulnerability