Skip to content

Vendors

Adobe

164records22productslast change2026-09-04RSSas of the 2026-09-07 snapshot

Rows per week, last 26 weeks

266 rows in the last 26 weeks, 1 in the week to 2026-09-071 this week

Rows, not records: one record that changed for four products is four rows and one record.

Choose a product · 22 products

Open the full product index. Counts beside products are records and are not added across products.

Every change, newest first

lines 1 to 20 of 26 · standing on 268 of 276 rows
Every counted change to a CVE or CISA KEV record naming Adobe, newest first. A line standing for the same change across several records or products says how many and opens to every one.
Changed on, The day the commit that carried this change was read. Where the same change spans several days, the first and the last, never a midpoint. Not dated means no commit could be located for the row.ChangeCVEProductWhat the record says now
2025-05-12 to2026-09-04Ransomware use confirmedFlash Playerstated at publication Unknown, now states Known
2026-09-04Ransomware use confirmedCVE-2016-4117Flash Playerstated at publication Unknown, now states Known
2025-05-12Ransomware use confirmedCVE-2015-7645Flash Playerstated at publication Unknown, now states Known
2026-08-27Product addedAdobe Commerce Eventsnot named as affected at publication, now names adobe commerce events
2026-08-27Product addedCVE-2026-47984Adobe Commerce Eventsnot named as affected at publication, now names adobe commerce events
2026-08-27Product addedCVE-2026-47988Adobe Commerce Eventsnot named as affected at publication, now names adobe commerce events
12 more rows in this change are not listed here. Open all 14 rows
2026-08-27Product addedAdobe Connect Desktop Applicationnot named as affected at publication, now names adobe connect desktop application
2026-08-27Product addedCVE-2026-27303Adobe Connect Desktop Applicationnot named as affected at publication, now names adobe connect desktop application
2026-08-27Product addedCVE-2026-34617Adobe Connect Desktop Applicationnot named as affected at publication, now names adobe connect desktop application
8 more rows in this change are not listed here. Open all 10 rows
2026-08-26 to2026-08-27Product addedAdobe Dng Software Development Kit (Sdk)not named as affected at publication, now names adobe dng software development kit (sdk)
2026-08-27Product addedCVE-2026-27258Adobe Dng Software Development Kit (Sdk)not named as affected at publication, now names adobe dng software development kit (sdk)
2026-08-27Product addedCVE-2026-27280Adobe Dng Software Development Kit (Sdk)not named as affected at publication, now names adobe dng software development kit (sdk)
11 more rows in this change are not listed here. Open all 13 rows
2026-08-26 to2026-08-27Product addedAcrobat 2024not named as affected at publication, now names acrobat 2024
2026-08-27Product addedCVE-2026-34622Acrobat 2024not named as affected at publication, now names acrobat 2024
2026-08-27Product addedCVE-2026-34626Acrobat 2024not named as affected at publication, now names acrobat 2024
26 more rows in this change are not listed here. Open all 28 rows
2026-08-26 to2026-08-27Product addedAcrobat Dcnot named as affected at publication, now names acrobat dc
2026-08-27Product addedCVE-2026-34622Acrobat Dcnot named as affected at publication, now names acrobat dc
2026-08-27Product addedCVE-2026-34626Acrobat Dcnot named as affected at publication, now names acrobat dc
26 more rows in this change are not listed here. Open all 28 rows
2026-08-27Product addedAdobe Commerce b2bnot named as affected at publication, now names adobe commerce b2b
2026-08-27Product addedCVE-2026-21291Adobe Commerce b2bnot named as affected at publication, now names adobe commerce b2b
2026-08-27Product addedCVE-2026-21293Adobe Commerce b2bnot named as affected at publication, now names adobe commerce b2b
32 more rows in this change are not listed here. Open all 34 rows
2026-08-27Product addedMagento Open Sourcenot named as affected at publication, now names magento open source
2026-08-27Product addedCVE-2026-21291Magento Open Sourcenot named as affected at publication, now names magento open source
2026-08-27Product addedCVE-2026-21293Magento Open Sourcenot named as affected at publication, now names magento open source
32 more rows in this change are not listed here. Open all 34 rows
2026-07-14 to2026-08-27Product addedContent Credentials Js Sdknot named as affected at publication, now names content credentials js sdk
2026-08-27Product addedCVE-2026-34672Content Credentials Js Sdknot named as affected at publication, now names content credentials js sdk
2026-08-27Product addedCVE-2026-34671Content Credentials Js Sdknot named as affected at publication, now names content credentials js sdk
32 more rows in this change are not listed here. Open all 34 rows
2026-07-14 to2026-08-27Product addedContent Credentials Rust Sdknot named as affected at publication, now names content credentials rust sdk
2026-08-27Product addedCVE-2026-34672Content Credentials Rust Sdknot named as affected at publication, now names content credentials rust sdk
2026-08-27Product addedCVE-2026-34671Content Credentials Rust Sdknot named as affected at publication, now names content credentials rust sdk
32 more rows in this change are not listed here. Open all 34 rows
2026-08-26Product addedAdobe Experience Manager 6.5not named as affected at publication, now names adobe experience manager 6.5
2026-08-26Product addedCVE-2026-34693Adobe Experience Manager 6.5not named as affected at publication, now names adobe experience manager 6.5
2026-08-26Product addedCVE-2026-34694Adobe Experience Manager 6.5not named as affected at publication, now names adobe experience manager 6.5
1 more row in this change is not listed here. Open all 3 rows
2026-08-26Product addedAdobe Experience Manager 6.5 Ltsnot named as affected at publication, now names adobe experience manager 6.5 lts
2026-08-26Product addedCVE-2026-34693Adobe Experience Manager 6.5 Ltsnot named as affected at publication, now names adobe experience manager 6.5 lts
2026-08-26Product addedCVE-2026-34694Adobe Experience Manager 6.5 Ltsnot named as affected at publication, now names adobe experience manager 6.5 lts
1 more row in this change is not listed here. Open all 3 rows
2026-07-15Affected range extendedAdobe Experience Manager 6.5stated at publication 6.5.24, now states 6.5.25
2026-07-15Affected range extendedCVE-2026-48310Adobe Experience Manager 6.5stated at publication 6.5.24, now states 6.5.25
2026-07-15Affected range extendedCVE-2026-48259Adobe Experience Manager 6.5stated at publication 6.5.24, now states 6.5.25
11 more rows in this change are not listed here. Open all 13 rows
2026-07-14Product addedContent Credentials command-line Toolnot named as affected at publication, now names content credentials command-line tool
2026-07-14Product addedCVE-2026-48290Content Credentials command-line Toolnot named as affected at publication, now names content credentials command-line tool
2026-07-14Product addedCVE-2026-48295Content Credentials command-line Toolnot named as affected at publication, now names content credentials command-line tool
10 more rows in this change are not listed here. Open all 12 rows
2026-07-14Affected range extendedCVE-2026-34690After Effectsstated at publication 25.6.4, now states 25.6.5
2026-07-07Added to CISA KEVCVE-2026-48282ColdFusionlisted by CISA 2026-07-07federal fix due 2026-07-10
2026-05-20Added to CISA KEVCVE-2009-3459Acrobat and Readerlisted by CISA 2026-05-20federal fix due 2026-06-03
2026-04-13Added to CISA KEVCVE-2020-9715Acrobatlisted by CISA 2026-04-13federal fix due 2026-04-27
2026-04-13Added to CISA KEVCVE-2026-34621Acrobat and Readerlisted by CISA 2026-04-13federal fix due 2026-04-27
2025-10-24Added to CISA KEVCVE-2025-54236Commerce and Magentolisted by CISA 2025-10-24federal fix due 2025-11-14

A line that names a count is the same change on that many records or products, shown once; it opens to every member. A closed line is not reached by find-in-page; the flat view (Every row, flat →) is. Only counted changes are here: a change a kind's false-positive filter refused, such as a product line being renumbered, is in no figure on this page.

Data sources and quality

One vendor, every counted kind of change: the rows where a CVE record or a CISA KEV entry naming Adobe changed after publication. The vendor name is the record's own text, compared without regard to case, so one organisation can appear under more than one spelling and this page holds the spellings that share its web address. Rows and records are different numbers and are never added together.

Not counted: a product line being renumbered, a boundary already named in the record's own description, and the other refusal classes are filtered as false positives and are in no figure here, so this page is what survived those filters rather than everything the catalog changed for this vendor.

Not checked: a record published before 2023 cannot have its state at publication recovered and was never compared, and a CISA KEV listing added before the first mirrored commit was never seen changing, so an absence from this page is not evidence that a record held.

How every one of these figures is measured, in full →

Shipped snapshot computed 2026-09-07 from catalog commit f5f9fc6fd7dc. Real findings, not live ones: records amended since are not reflected. A later fix version is evidence that the record changed, not evidence that the first fix was incomplete.