Adobe Connect Deserialization Vulnerability Leading to Arbitrary Code Execution

Vulnerability

A deserialization vulnerability allowing arbitrary code execution has been identified in Adobe Connect versions through 24.0. This issue requires user interaction to exploit.

Impact

Exploitation of this vulnerability could result in arbitrary code execution on the affected system.

Remediation

Users are advised to update to Adobe Connect version 25.1. Release notes are available on the Adobe Connect 2025 application release notes page.

Added: Jul 9, 2025, 1:09 AM
Updated: Jul 9, 2025, 1:09 AM

Vulnerability Rating

Custom Algorithm
spread
3.4
impact
10.0
exploitability
6.5
remediation
7.7
relevance
0.2
threat
0.5
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.