Description
InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
INFO
Published Date :
2026-01-13T18:35:36.092Z
Last Modified :
2026-01-13T19:06:06.133Z
Source :
adobe
AFFECTED PRODUCTS
The following products are affected by CVE-2026-21278 vulnerability.
| Vendors | Products |
|---|---|
| Adobe |
|
| Apple |
|
| Microsoft |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-21278.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact