Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 Jan 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:adobe:substance_3d_modeler:*:*:*:*:*:*:*:* |
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe substance 3d Modeler |
|
| Vendors & Products |
Adobe
Adobe substance 3d Modeler |
Tue, 13 Jan 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Title | Substance3D - Modeler | Out-of-bounds Read (CWE-125) | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-01-13T20:20:16.476Z
Updated: 2026-01-14T18:53:08.207Z
Reserved: 2025-12-12T22:01:18.191Z
Link: CVE-2026-21302
Updated: 2026-01-14T18:53:05.660Z
Status : Analyzed
Published: 2026-01-13T21:15:53.960
Modified: 2026-01-14T17:58:14.300
Link: CVE-2026-21302
No data.