• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
update adobe acrobat and reader to patch actively exploited vulnerability

Update Adobe Acrobat and Reader to Patch Actively Exploited Vulnerability

You are here: Home / General Cyber Security News / Update Adobe Acrobat and Reader to Patch Actively Exploited Vulnerability
September 13, 2023

Adobe’s Patch Tuesday update for September 2023 will come with a patch for a critical actively exploited security flaw in Acrobat and Reader that could allow an attacker to execute destructive code on vulnerable methods.

The vulnerability, tracked as CVE-2023-26369, is rated 7.8 for severity on the CVSS scoring system and impacts each Windows and macOS variations of Acrobat DC, Acrobat Reader DC, Acrobat 2020, and Acrobat Reader 2020.

Explained as an out-of-bounds generate, thriving exploitation of the bug could guide to code execution by opening a specially crafted PDF doc. Adobe did not disclose any additional details about the issue or the targeting included.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


“Adobe is knowledgeable that CVE-2023-26369 has been exploited in the wild in confined attacks concentrating on Adobe Acrobat and Reader,” the company acknowledged in an advisory.

Forthcoming WEBINARWay As well Susceptible: Uncovering the Condition of the Id Attack Floor

Achieved MFA? PAM? Support account defense? Find out how well-geared up your group genuinely is from identification threats

Supercharge Your Competencies

CVE-2023-26369 has an effect on the below variations –

  • Acrobat DC (23.003.20284 and earlier variations) – Fastened in 23.006.20320
  • Acrobat Reader DC (23.003.20284 and earlier versions) – Fixed in 23.006.20320
  • Acrobat 2020 (20.005.30514 for Windows and previously variations, 20.005.30516 for macOS and earlier variations) – Mounted in 20.005.30524
  • Acrobat Reader 2020 (20.005.30514 for Windows and before versions, 20.005.30516 for macOS and before versions) – Preset in 20.005.30524

Also patched by the software maker are two cross-web-site scripting flaws each individual in Adobe Hook up (CVE-2023-29305 and CVE-2023-29306) and Adobe Expertise Manager (CVE-2023-38214 and CVE-2023-38215) that could guide to arbitrary code execution.

Uncovered this short article interesting? Stick to us on Twitter  and LinkedIn to read through much more exceptional articles we put up.


Some areas of this write-up are sourced from:
thehackernews.com

Previous Post: «mozilla rushes to patch webp critical zero day exploit in firefox Mozilla Rushes to Patch WebP Critical Zero-Day Exploit in Firefox and Thunderbird
Next Post: Microsoft Releases Patch for Two New Actively Exploited Zero-Days Flaws microsoft releases patch for two new actively exploited zero days flaws»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.