Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
References
| Link | Resource |
|---|---|
| https://helpx.adobe.com/security/products/creative-cloud/apsb26-77.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
17 Jul 2026, 03:23
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:adobe:creative_cloud_desktop_application:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| References | () https://helpx.adobe.com/security/products/creative-cloud/apsb26-77.html - Vendor Advisory | |
| First Time |
Microsoft windows
Microsoft Adobe creative Cloud Desktop Application Adobe |
14 Jul 2026, 21:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-14 21:17
Updated : 2026-07-17 03:23
NVD link : CVE-2026-48344
Mitre link : CVE-2026-48344
CVE.ORG link : CVE-2026-48344
JSON object : View
Products Affected
adobe
- creative_cloud_desktop_application
microsoft
- windows
CWE
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
