CVE-2016-7866 is a critical memory corruption vulnerability affecting Adobe Animate versions 15.2.1.95 and earlier. This flaw carries a CVSS score of 9.8, indicating a severe risk due to its network-based attack vector, low attack complexity, and potential for complete compromise, including arbitrary code execution. While not listed in CISA's KEV catalog, an exploit (EDB-40915) is publicly available, and the vulnerability has garnered some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 15.2.1.95CPE matchmatch criteria | cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.