7.4
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N
Description
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Basic Information
ID
CVE-2026-47937
Source
adobe
Published
Jun 9, 2026 at 20:05
Affected Product
Vendor
Adobe
Product
Acrobat Reader
Affected Versions
Adobe Acrobat Reader 0