PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-47925 Adobe CVE debrief

CVE-2026-47925 is an Integer Overflow or Wraparound vulnerability affecting Adobe Acrobat Reader versions 24.001.30365, 26.001.21651, and earlier. This vulnerability could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor
Adobe
Product
Acrobat Reader
CVSS
MEDIUM 5.5
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-09
Original CVE updated
2026-06-12
Advisory published
2026-06-09
Advisory updated
2026-06-12

Who should care

Users of Adobe Acrobat Reader versions 24.001.30365, 26.001.21651, and earlier should apply patches or mitigations as available.

Technical summary

The vulnerability has a CVSS score of 5.5 and is classified as MEDIUM severity. The CVSS vector is CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H. The weakness is categorized as CWE-190.

Defensive priority

MEDIUM

Recommended defensive actions

  • Apply patches or updates provided by Adobe to vulnerable systems as soon as possible.
  • Restrict user access to untrusted files and sources.
  • Implement robust file validation and sanitization mechanisms.

Evidence notes

The CVE was published on 2026-06-09T21:17:22.457Z and modified on 2026-06-12T19:23:34.433Z. The vulnerability affects Adobe Acrobat Reader versions 24.001.30365, 26.001.21651, and earlier.

Official resources

CVE-2026-47925 was published on 2026-06-09T21:17:22.457Z and modified on 2026-06-12T19:23:34.433Z.