Adobe After Effects Out-of-Bounds Read Vulnerability Leading to Memory Exposure

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in Adobe After Effects versions 25.3, 24.6.7 and earlier. This vulnerability could result in memory exposure, potentially disclosing sensitive information. Exploitation requires user interaction, as a victim must open a malicious file.

Impact

Exploitation of this vulnerability could lead to unauthorized memory access, allowing for the exposure of sensitive information.

Remediation

Users are advised to update to Adobe After Effects version 24.6.8 or 25.4. For managed environments, IT administrators can use the Adobe Admin Console to deploy Creative Cloud applications to end users.

Added: Sep 9, 2025, 9:27 PM
Updated: Sep 9, 2025, 9:27 PM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.