CVE-2026-84395
7.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Summary
Premiere Pro is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation potentially resulting in unauthorized write access. Exploitation of this issue does not require user interaction. Scope is changed.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Adobe | Premiere | 0 <= 26.3.2 | affected |
| Adobe | Premiere | 26.5 | unaffected |
| Adobe | Premiere | 0 <= 25.6.5 | affected |
| Adobe | Premiere | 25.6.6 | unaffected |
Weaknesses
- CWE-918: Server-Side Request Forgery (SSRF) (CWE-918)
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.