Multiple Adobe Photoshop Vulnerabilities Allow Remote Code Execution
Article Content
Three vulnerabilities have been identified in Adobe Photoshop, allowing remote attackers to execute arbitrary code. These vulnerabilities, ZDI-26-679, ZDI-26-678, and ZDI-26-677, involve integer overflow issues during the parsing of DICOM image data. User interaction is required for exploitation, as victims must open a malicious file or visit a malicious webpage. Adobe has released updates to address these vulnerabilities. The vulnerabilities were reported to Adobe between June 15 and June 26, 2026, with public advisories released on September 10, 2026. The flaws affect all affected installations of Adobe Photoshop. Security professionals are urged to apply the updates promptly to mitigate risks.
Key Points: • Three vulnerabilities in Adobe Photoshop allow remote code execution. • User interaction is required for exploitation via malicious files or pages. • Adobe has issued updates to address these vulnerabilities.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.