Adobe / Creative Cloud
24 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-64896 | Creative Cloud Desktop | Creation of Temporary File in Directory with Incorrect Permissions (CWE-379) | MEDIUM | 5.5 | Dec 9, 2025 |
| CVE-2025-54271 | Creative Cloud Desktop | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367) | MEDIUM | 5.6 | Oct 15, 2025 |
| CVE-2023-26358 | Adobe Creative Cloud AdobeExtensionService.exe local privilege escalation vulnerability | HIGH | 8.6 | Mar 22, 2023 |
| CVE-2021-28581 | Adobe Creative Cloud Desktop uncontrolled search path element vulnerability could lead to local privilege escalation | HIGH | 7.3 | Sep 8, 2021 |
| CVE-2020-24422 | Uncontrolled Search Path in Creative Cloud Desktop Application | HIGH | 7.8 | Oct 21, 2020 |
| CVE-2020-9669 | Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a lack of exploit mitigations vulnerability. Successful exploitation could lead to privi… | CRITICAL | 9.8 | Jul 16, 2020 |
| CVE-2020-3808 | Creative Cloud Desktop Application versions 5.0 and earlier have a time-of-check to time-of-use (toctou) race condition vulnerability. Successful exploitation… | MEDIUM | 5.9 | Mar 25, 2020 |
| CVE-2019-8236 | Creative Cloud Desktop Application version 4.6.1 and earlier versions have Security Bypass vulnerability. Successful exploitation could lead to Privilege Escal… | CRITICAL | 9.8 | Oct 23, 2019 |
| CVE-2019-7959 | Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitation could l… | CRITICAL | 9.8 | Aug 16, 2019 |
| CVE-2019-7958 | Creative Cloud Desktop Application versions 4.6.1 and earlier have an insecure inherited permissions vulnerability. Successful exploitation could lead to privi… | CRITICAL | 9.8 | Aug 16, 2019 |
| CVE-2019-7957 | Creative Cloud Desktop Application versions 4.6.1 and earlier have a security bypass vulnerability. Successful exploitation could lead to denial of service. | HIGH | 7.5 | Aug 16, 2019 |
| CVE-2019-8063 | Creative Cloud Desktop Application 4.6.1 and earlier versions have an insecure transmission of sensitive data vulnerability. Successful exploitation could lead… | HIGH | 7.5 | Aug 16, 2019 |
| CVE-2019-7093 | Creative Cloud Desktop Application (installer) versions 4.7.0.400 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploi… | HIGH | 7.8 | May 24, 2019 |
| CVE-2018-5003 | Adobe Creative Cloud Desktop Application before 4.5.5.342 (installer) has an insecure library loading (dll hijacking) vulnerability. Successful exploitation co… | HIGH | 7.8 | Aug 29, 2018 |
| CVE-2018-12829 | Adobe Creative Cloud Desktop Application before 4.6.1 has an improper certificate validation vulnerability. Successful exploitation could lead to privilege esc… | CRITICAL | 9.8 | Aug 29, 2018 |
| CVE-2018-4992 | Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper input validation vulnerability. Successful exploitation co… | HIGH | 7.8 | May 19, 2018 |
| CVE-2018-4991 | Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper certificate validation vulnerability. Successful exploitat… | CRITICAL | 9.8 | May 19, 2018 |
| CVE-2018-4873 | Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Unquoted Search Path vulnerability. Successful exploitation could l… | HIGH | 7.8 | May 19, 2018 |
| CVE-2017-3007 | Adobe Thor versions 3.9.5.353 and earlier have a vulnerability in the directory search path used to find resources, related to Creative Cloud desktop applicati… | HIGH | 7.8 | Apr 12, 2017 |
| CVE-2017-3006 | Adobe Thor versions 3.9.5.353 and earlier have a vulnerability related to the use of improper resource permissions during the installation of Creative Cloud de… | HIGH | 8.8 | Apr 12, 2017 |
| CVE-2016-6935 | Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.8.0.310 on Windows allows local users to gain privileges via a… | HIGH | 7.8 | Oct 13, 2016 |
| CVE-2016-4158 | Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a… | HIGH | 7.3 | Jun 16, 2016 |
| CVE-2016-4157 | Untrusted search path vulnerability in the installer in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privile… | HIGH | 7.3 | Jun 16, 2016 |
| CVE-2016-1034 | The Sync Process in the JavaScript API for Creative Cloud Libraries in Adobe Creative Cloud Desktop Application before 3.6.0.244 allows remote attackers to rea… | CRITICAL | 9.1 | Apr 12, 2016 |
Showing 1 to 24 of 24 CVEs