CVE-2026-34644

After Effects versions 26.0, 25.6.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:after_effects:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:after_effects:26.0:*:*:*:*:*:*:*

History

13 May 2026, 19:35

Type Values Removed Values Added
References () https://helpx.adobe.com/security/products/after_effects/apsb26-48.html - () https://helpx.adobe.com/security/products/after_effects/apsb26-48.html - Vendor Advisory
CPE cpe:2.3:a:adobe:after_effects:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:after_effects:26.0:*:*:*:*:*:*:*
First Time Adobe
Adobe after Effects

12 May 2026, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-12 18:17

Updated : 2026-05-13 19:35


NVD link : CVE-2026-34644

Mitre link : CVE-2026-34644

CVE.ORG link : CVE-2026-34644


JSON object : View

Products Affected

adobe

  • after_effects
CWE
CWE-190

Integer Overflow or Wraparound