CVE-2018-15980 is an out-of-bounds read vulnerability affecting Adobe Photoshop CC versions 19.1.6 and earlier. This high-severity flaw (CVSS 7.5) allows for information disclosure through network-based attacks with low complexity, requiring no user interaction. While its EPSS and FAUCET scores indicate a notable risk, there is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog. Community discussion and media coverage are minimal, suggesting limited active exploitation or widespread attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 19.1.6CPE matchmatch criteria | cpe:2.3:a:adobe:photoshop_cc:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.