Adobe
164records22productslast change2026-09-04RSSas of the 2026-09-07 snapshot
Rows per week, last 26 weeks
Rows, not records: one record that changed for four products is four rows and one record.
Choose a product · 22 products
22 of 22 products
- Flash Player2 records
- Adobe Commerce b2b34 records
- Magento Open Source34 records
- Acrobat 202428 records
- Acrobat Dc28 records
- Adobe Commerce Events14 records
- Adobe Dng Software Development Kit (Sdk)13 records
- Adobe Connect Desktop Application10 records
- Content Credentials Js Sdk34 records
- Content Credentials Rust Sdk34 records
- Adobe Experience Manager 6.516 records
- Adobe Experience Manager 6.5 Lts3 records
- Content Credentials command-line Tool12 records
- After Effects1 record
- ColdFusion2 records
- Acrobat and Reader3 records
- Acrobat1 record
- Commerce and Magento1 record
- Experience Manager (AEM) Forms1 record
- Adobe Commerce3 records
- Acrobat Reader1 record
- Illustrator1 record
Open the full product index. Counts beside products are records and are not added across products.
Every change, newest first
lines 1 to 20 of 26 · standing on 268 of 276 rows| Changed on, The day the commit that carried this change was read. Where the same change spans several days, the first and the last, never a midpoint. Not dated means no commit could be located for the row. | Change | CVE | Product | What the record says now |
|---|---|---|---|---|
| 2025-05-12 to2026-09-04 | Ransomware use confirmed | Flash Player | stated at publication Unknown, now states Known | |
| 2026-09-04 | Ransomware use confirmed | CVE-2016-4117 | Flash Player | stated at publication Unknown, now states Known |
| 2025-05-12 | Ransomware use confirmed | CVE-2015-7645 | Flash Player | stated at publication Unknown, now states Known |
| 2026-08-27 | Product added | Adobe Commerce Events | not named as affected at publication, now names adobe commerce events | |
| 2026-08-27 | Product added | CVE-2026-47984 | Adobe Commerce Events | not named as affected at publication, now names adobe commerce events |
| 2026-08-27 | Product added | CVE-2026-47988 | Adobe Commerce Events | not named as affected at publication, now names adobe commerce events |
| 12 more rows in this change are not listed here. Open all 14 rows → | ||||
| 2026-08-27 | Product added | Adobe Connect Desktop Application | not named as affected at publication, now names adobe connect desktop application | |
| 2026-08-27 | Product added | CVE-2026-27303 | Adobe Connect Desktop Application | not named as affected at publication, now names adobe connect desktop application |
| 2026-08-27 | Product added | CVE-2026-34617 | Adobe Connect Desktop Application | not named as affected at publication, now names adobe connect desktop application |
| 8 more rows in this change are not listed here. Open all 10 rows → | ||||
| 2026-08-26 to2026-08-27 | Product added | Adobe Dng Software Development Kit (Sdk) | not named as affected at publication, now names adobe dng software development kit (sdk) | |
| 2026-08-27 | Product added | CVE-2026-27258 | Adobe Dng Software Development Kit (Sdk) | not named as affected at publication, now names adobe dng software development kit (sdk) |
| 2026-08-27 | Product added | CVE-2026-27280 | Adobe Dng Software Development Kit (Sdk) | not named as affected at publication, now names adobe dng software development kit (sdk) |
| 11 more rows in this change are not listed here. Open all 13 rows → | ||||
| 2026-08-26 to2026-08-27 | Product added | Acrobat 2024 | not named as affected at publication, now names acrobat 2024 | |
| 2026-08-27 | Product added | CVE-2026-34622 | Acrobat 2024 | not named as affected at publication, now names acrobat 2024 |
| 2026-08-27 | Product added | CVE-2026-34626 | Acrobat 2024 | not named as affected at publication, now names acrobat 2024 |
| 26 more rows in this change are not listed here. Open all 28 rows → | ||||
| 2026-08-26 to2026-08-27 | Product added | Acrobat Dc | not named as affected at publication, now names acrobat dc | |
| 2026-08-27 | Product added | CVE-2026-34622 | Acrobat Dc | not named as affected at publication, now names acrobat dc |
| 2026-08-27 | Product added | CVE-2026-34626 | Acrobat Dc | not named as affected at publication, now names acrobat dc |
| 26 more rows in this change are not listed here. Open all 28 rows → | ||||
| 2026-08-27 | Product added | Adobe Commerce b2b | not named as affected at publication, now names adobe commerce b2b | |
| 2026-08-27 | Product added | CVE-2026-21291 | Adobe Commerce b2b | not named as affected at publication, now names adobe commerce b2b |
| 2026-08-27 | Product added | CVE-2026-21293 | Adobe Commerce b2b | not named as affected at publication, now names adobe commerce b2b |
| 32 more rows in this change are not listed here. Open all 34 rows → | ||||
| 2026-08-27 | Product added | Magento Open Source | not named as affected at publication, now names magento open source | |
| 2026-08-27 | Product added | CVE-2026-21291 | Magento Open Source | not named as affected at publication, now names magento open source |
| 2026-08-27 | Product added | CVE-2026-21293 | Magento Open Source | not named as affected at publication, now names magento open source |
| 32 more rows in this change are not listed here. Open all 34 rows → | ||||
| 2026-07-14 to2026-08-27 | Product added | Content Credentials Js Sdk | not named as affected at publication, now names content credentials js sdk | |
| 2026-08-27 | Product added | CVE-2026-34672 | Content Credentials Js Sdk | not named as affected at publication, now names content credentials js sdk |
| 2026-08-27 | Product added | CVE-2026-34671 | Content Credentials Js Sdk | not named as affected at publication, now names content credentials js sdk |
| 32 more rows in this change are not listed here. Open all 34 rows → | ||||
| 2026-07-14 to2026-08-27 | Product added | Content Credentials Rust Sdk | not named as affected at publication, now names content credentials rust sdk | |
| 2026-08-27 | Product added | CVE-2026-34672 | Content Credentials Rust Sdk | not named as affected at publication, now names content credentials rust sdk |
| 2026-08-27 | Product added | CVE-2026-34671 | Content Credentials Rust Sdk | not named as affected at publication, now names content credentials rust sdk |
| 32 more rows in this change are not listed here. Open all 34 rows → | ||||
| 2026-08-26 | Product added | Adobe Experience Manager 6.5 | not named as affected at publication, now names adobe experience manager 6.5 | |
| 2026-08-26 | Product added | CVE-2026-34693 | Adobe Experience Manager 6.5 | not named as affected at publication, now names adobe experience manager 6.5 |
| 2026-08-26 | Product added | CVE-2026-34694 | Adobe Experience Manager 6.5 | not named as affected at publication, now names adobe experience manager 6.5 |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2026-08-26 | Product added | Adobe Experience Manager 6.5 Lts | not named as affected at publication, now names adobe experience manager 6.5 lts | |
| 2026-08-26 | Product added | CVE-2026-34693 | Adobe Experience Manager 6.5 Lts | not named as affected at publication, now names adobe experience manager 6.5 lts |
| 2026-08-26 | Product added | CVE-2026-34694 | Adobe Experience Manager 6.5 Lts | not named as affected at publication, now names adobe experience manager 6.5 lts |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2026-07-15 | Affected range extended | Adobe Experience Manager 6.5 | stated at publication 6.5.24, now states 6.5.25 | |
| 2026-07-15 | Affected range extended | CVE-2026-48310 | Adobe Experience Manager 6.5 | stated at publication 6.5.24, now states 6.5.25 |
| 2026-07-15 | Affected range extended | CVE-2026-48259 | Adobe Experience Manager 6.5 | stated at publication 6.5.24, now states 6.5.25 |
| 11 more rows in this change are not listed here. Open all 13 rows → | ||||
| 2026-07-14 | Product added | Content Credentials command-line Tool | not named as affected at publication, now names content credentials command-line tool | |
| 2026-07-14 | Product added | CVE-2026-48290 | Content Credentials command-line Tool | not named as affected at publication, now names content credentials command-line tool |
| 2026-07-14 | Product added | CVE-2026-48295 | Content Credentials command-line Tool | not named as affected at publication, now names content credentials command-line tool |
| 10 more rows in this change are not listed here. Open all 12 rows → | ||||
| 2026-07-14 | Affected range extended | CVE-2026-34690 | After Effects | stated at publication 25.6.4, now states 25.6.5 |
| 2026-07-07 | Added to CISA KEV | CVE-2026-48282 | ColdFusion | listed by CISA 2026-07-07federal fix due 2026-07-10 |
| 2026-05-20 | Added to CISA KEV | CVE-2009-3459 | Acrobat and Reader | listed by CISA 2026-05-20federal fix due 2026-06-03 |
| 2026-04-13 | Added to CISA KEV | CVE-2020-9715 | Acrobat | listed by CISA 2026-04-13federal fix due 2026-04-27 |
| 2026-04-13 | Added to CISA KEV | CVE-2026-34621 | Acrobat and Reader | listed by CISA 2026-04-13federal fix due 2026-04-27 |
| 2025-10-24 | Added to CISA KEV | CVE-2025-54236 | Commerce and Magento | listed by CISA 2025-10-24federal fix due 2025-11-14 |
A line that names a count is the same change on that many records or products, shown once; it opens to every member. A closed line is not reached by find-in-page; the flat view (Every row, flat →) is. Only counted changes are here: a change a kind's false-positive filter refused, such as a product line being renumbered, is in no figure on this page.
Data sources and quality
One vendor, every counted kind of change: the rows where a CVE record or a CISA KEV entry naming Adobe changed after publication. The vendor name is the record's own text, compared without regard to case, so one organisation can appear under more than one spelling and this page holds the spellings that share its web address. Rows and records are different numbers and are never added together.
Not counted: a product line being renumbered, a boundary already named in the record's own description, and the other refusal classes are filtered as false positives and are in no figure here, so this page is what survived those filters rather than everything the catalog changed for this vendor.
Not checked: a record published before 2023 cannot have its state at publication recovered and was never compared, and a CISA KEV listing added before the first mirrored commit was never seen changing, so an absence from this page is not evidence that a record held.
How every one of these figures is measured, in full →
Shipped snapshot computed 2026-09-07 from catalog commit f5f9fc6fd7dc. Real findings, not live ones: records amended since are not reflected. A later fix version is evidence that the record changed, not evidence that the first fix was incomplete.