VDB
CVE-2026-21333
CVE-2026-21333
PUBLISHED
CVSS 8.600000381469727 HIGH
Illustrator versions 29.8.4, 30.1 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
EPSS 0.03% · 10.4th percentile
Risk Scores
CVSS 3.1
8.600000381469727
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.03%
10.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| adobe | illustrator | 29.0, 30.0, 29.0 |
| Adobe | Illustrator | 0, 0 |
Timeline
- Mar 10, 2026 CVE Published
- Mar 11, 2026 EPSS Score
- Mar 11, 2026 CVE Updated
- Mar 11, 2026 PoC Published
- Mar 12, 2026 EPSS Score
- Mar 13, 2026 EPSS Score
- Mar 14, 2026 EPSS Score
- Mar 15, 2026 EPSS Score
- Mar 16, 2026 EPSS Score
- Mar 17, 2026 EPSS Score
- Mar 17, 2026 Security Advisory
- Mar 17, 2026 Security Advisory