CVE-2026-27221

Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by an Improper Certificate Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to spoof the identity of a signer. Exploitation of this issue requires user interaction.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

11 Mar 2026, 18:15

Type Values Removed Values Added
CPE cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*
cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
References () https://helpx.adobe.com/security/products/acrobat/apsb26-26.html - () https://helpx.adobe.com/security/products/acrobat/apsb26-26.html - Vendor Advisory
First Time Microsoft
Adobe acrobat Reader Dc
Adobe
Microsoft windows
Apple macos
Apple
Adobe acrobat Dc
Adobe acrobat

11 Mar 2026, 13:52

Type Values Removed Values Added
Summary
  • (es) Las versiones de Acrobat Reader 24.001.30307, 24.001.30308, 25.001.21265 y anteriores están afectadas por una vulnerabilidad de Validación de Certificado Inapropiada que podría resultar en una omisión de característica de seguridad. Un atacante podría aprovechar esta vulnerabilidad para suplantar la identidad de un firmante. La explotación de este problema requiere interacción del usuario.

10 Mar 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-10 22:16

Updated : 2026-03-11 18:15


NVD link : CVE-2026-27221

Mitre link : CVE-2026-27221

CVE.ORG link : CVE-2026-27221


JSON object : View

Products Affected

adobe

  • acrobat
  • acrobat_dc
  • acrobat_reader_dc

microsoft

  • windows

apple

  • macos
CWE
CWE-295

Improper Certificate Validation