Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
Affected Vendors & Products
References
History
Thu, 15 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 Jan 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:adobe:substance_3d_modeler:*:*:*:*:*:*:*:* |
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe substance 3d Modeler |
|
| Vendors & Products |
Adobe
Adobe substance 3d Modeler |
Tue, 13 Jan 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Title | Substance3D - Modeler | Out-of-bounds Read (CWE-125) | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-01-13T20:20:17.246Z
Updated: 2026-01-14T18:52:30.126Z
Reserved: 2025-12-12T22:01:18.192Z
Link: CVE-2026-21303
Updated: 2026-01-14T18:52:26.422Z
Status : Analyzed
Published: 2026-01-13T21:15:54.117
Modified: 2026-01-14T17:58:17.503
Link: CVE-2026-21303
No data.