← Vulnerability feed

Vulnerability record · CVE-2020-3787 · published 25 March 2020

CVE-2020-3787: Adobe photoshop 2020 out-of-bounds write vulnerability

Adobe · Photoshop 2020

Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

9.8 CVSS 3.1 Critical EPSS 3.9% · top 10.0% CWE-787 · Out-of-bounds write
9.8CVSS 3.1 base score, v2 7.5
3.9%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-3787 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-3111Adobe bridge memory buffer overflow vulnerabilityHeap-based buffer overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary cod…EPSS 19%10.0CVE-2015-3112Adobe bridge memory buffer overflow vulnerabilityAdobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allow attackers to execute arbitrary code or cause a denial of service …EPSS 14%10.0CVE-2015-3110Adobe photoshop cc vulnerabilityInteger overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary code via unsp…EPSS 17%10.0CVE-2015-3109Adobe photoshop cc memory buffer overflow vulnerabilityAdobe Photoshop CC before 16.0 (aka 2015.0.0) allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspeci…EPSS 5.1%9.8CVE-2020-3783Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a heap corruption vulnerability. Successful ex…EPSS 4.9%9.8CVE-2020-3784Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%9.8CVE-2020-3785Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%9.8CVE-2020-3786Adobe photoshop 2020 out-of-bounds write vulnerabilityAdobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful …EPSS 3.9%

Source: NIST National Vulnerability Database (record CVE-2020-3787), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.