CVE-2026-48344

Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:creative_cloud_desktop_application:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

17 Jul 2026, 03:23

Type Values Removed Values Added
CPE cpe:2.3:a:adobe:creative_cloud_desktop_application:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References () https://helpx.adobe.com/security/products/creative-cloud/apsb26-77.html - () https://helpx.adobe.com/security/products/creative-cloud/apsb26-77.html - Vendor Advisory
First Time Microsoft windows
Microsoft
Adobe creative Cloud Desktop Application
Adobe

14 Jul 2026, 21:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-14 21:17

Updated : 2026-07-17 03:23


NVD link : CVE-2026-48344

Mitre link : CVE-2026-48344

CVE.ORG link : CVE-2026-48344


JSON object : View

Products Affected

adobe

  • creative_cloud_desktop_application

microsoft

  • windows
CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition