CVE-2026-48344
7.8
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.1 / Impact: 6.0
Source: psirt@adobe.com (Secondary)
Description
Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
Affected (1)
Products: Adobe: Creative Cloud Desktop Application
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 6.9.1.1 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows | All versions |
References (1)
Source: psirt@adobe.com
Vendor Advisory
Timeline
No history available yet.