Adobe After Effects Out-of-Bounds Read Vulnerability Leading to Memory Exposure

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in Adobe After Effects. This issue affects versions 25.3, 24.6.7 and earlier, on both Windows and macOS. The vulnerability could lead to memory exposure, potentially disclosing sensitive information. Exploitation requires user interaction, as a victim must open a malicious file.

Impact

Exploitation of this vulnerability could result in unauthorized memory access, leading to the exposure of sensitive information.

Remediation

Users are advised to update to Adobe After Effects version 24.6.8 or 25.4. For managed environments, IT administrators can use the Admin Console to deploy Creative Cloud applications to end users.

Added: Sep 9, 2025, 9:26 PM
Updated: Sep 9, 2025, 9:26 PM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.