High Severity Vulnerability
This vulnerability has been rated as High severity. Immediate action is recommended.
CVE-2026-27295
HighVulnerability Description
Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS Metrics
Common Vulnerability Scoring System
Vector String:
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Known Affected Software
59 configuration(s) from 1 vendor(s)
cpe:2.3:a:adobe:framemaker:8.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019.0.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:9.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:5.5.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:9.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:9.0.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:9.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.10:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:14.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:1.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:11.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:8.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:4.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019.0.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:8.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:5.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:5.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:3.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:14.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019.0.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019.0.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:12.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.9:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:6.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:14.0.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.8:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:10.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:5.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:7.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2020.0.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.8:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2019.0.8:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:13.0.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:5.1.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:2022.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker:7.2:*:*:*:*:*:*:*
Severity Details
Weakness Type (CWE)
Out-of-bounds Write
- Description
- The product writes data past the end, or before the beginning, of the intended buffer.
- Exploit Likelihood
- High
- Typical Severity
- High
- Abstraction Level
- Base
Key Information
- Published Date
- April 14, 2026
