Adobe FrameMaker Untrusted Search Path Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A vulnerability exists in Adobe FrameMaker versions 2022.8 and earlier, related to an untrusted search path that could enable attackers to execute arbitrary code in the context of the current user. The vulnerability arises because the application may use a search path to find essential resources, such as programs. An attacker could potentially alter this search path to direct the application to a malicious program, which would then be executed. Notably, exploitation of this vulnerability does not require user interaction.

Impact

Successful exploitation allows for arbitrary code execution on the affected system, with the executed code running in the context of the current user.

Remediation

Users are advised to update to Adobe FrameMaker 2026 or Adobe FrameMaker 2022 Update 9. Instructions for downloading these versions are available in the Adobe FrameMaker Tech Note.

Added: Apr 15, 2026, 12:13 AM
Updated: Apr 15, 2026, 12:13 AM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
7.5
exploitability
2.9
remediation
7.7
relevance
5.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.