← Back to browse · API

CVE-2026-34621

Severity
HIGH
CVSS
8.6
EPSS
0.07086
Risk score
61.88
CISA KEV
Yes
PoC
No
Published
2026-04-11
Modified
2026-04-14
First seen
2026-08-07
Aliases
EUVD-2026-21675, GHSA-VCQH-932G-M3QJ
Products
Adobe:Acrobat Reader 0 ≤26.001.21367, Adobe:Acrobat and Reader
Sources
cisa.gov CVE-2026-34621
euvd EUVD-2026-21675

Description

Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

References