CVE-2026-48433

Summary

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected Software

VendorProductVersion RangeStatus
AdobeAdobe Substance 3D Designer0 <= 16.0.4affected
AdobeAdobe Substance 3D Designer16.0.5unaffected

Weaknesses

  • CWE-122: Heap-based Buffer Overflow (CWE-122)

References