Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Metrics
Affected Vendors & Products
References
History
Mon, 27 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe adobe Animate 2023 Adobe adobe Animate 2024 |
|
| Vendors & Products |
Adobe
Adobe adobe Animate 2023 Adobe adobe Animate 2024 |
Wed, 15 Jul 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Jul 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. | |
| Title | Animate | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-07-14T19:53:33.822Z
Updated: 2026-08-27T22:39:25.449Z
Reserved: 2026-05-21T15:28:38.140Z
Link: CVE-2026-48347
Updated: 2026-07-15T10:38:54.560Z
Status : Analyzed
Published: 2026-07-14T20:17:07.820
Modified: 2026-08-28T00:17:51.120
Link: CVE-2026-48347
No data.