CVE-2025-27167

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 11, 2025
Updated: Mar 31, 2025
CWE ID 426

Summary

CVE-2025-27167 is a critical vulnerability affecting Adobe Illustrator versions 29.2.1 and 28.7.4, and possibly earlier releases. This issue is classified as an Untrusted Search Path vulnerability, which means that an attacker could manipulate the application's search path to execute malicious programs, access unauthorized data files, or modify configuration settings in unexpected ways. By exploiting this weakness, an attacker can gain unauthorized access to crucial resources that the application trusts, potentially leading to serious security consequences. This vulnerability poses a significant risk, as it can impact any critical resource that the targeted application relies on.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share