← Vulnerability feed

Vulnerability record · CVE-2019-7972 · published 26 August 2019

CVE-2019-7972: Adobe photoshop cc type confusion vulnerability

Adobe · Photoshop Cc

Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

9.8 CVSS 3.0 Critical EPSS 6.4% · top 6.5% CWE-843 · Type confusion
9.8CVSS 3.0 base score, v2 10.0
6.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-7972 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-3111Adobe bridge memory buffer overflow vulnerabilityHeap-based buffer overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary cod…EPSS 19%10.0CVE-2015-3112Adobe bridge memory buffer overflow vulnerabilityAdobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allow attackers to execute arbitrary code or cause a denial of service …EPSS 14%10.0CVE-2015-3110Adobe photoshop cc vulnerabilityInteger overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary code via unsp…EPSS 17%10.0CVE-2015-3109Adobe photoshop cc memory buffer overflow vulnerabilityAdobe Photoshop CC before 16.0 (aka 2015.0.0) allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspeci…EPSS 5.1%9.8CVE-2020-3783Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a heap corruption vulnerability. Successful ex…EPSS 4.9%9.8CVE-2020-3784Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%9.8CVE-2020-3785Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%9.8CVE-2020-3786Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%

Source: NIST National Vulnerability Database (record CVE-2019-7972), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.