CVE-2026-34690

Summary

After Effects is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected Software

VendorProductVersion RangeStatus
AdobeAfter Effects0 <= 26.2.1affected
AdobeAfter Effects26.3unaffected
AdobeAfter Effects0 <= 25.6.5affected
AdobeAfter Effects25.6.6unaffected

Weaknesses

  • CWE-121: Stack-based Buffer Overflow (CWE-121)

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References