CVE-2019-7991 is an out-of-bounds read vulnerability affecting Adobe Photoshop CC versions 19.1.8 and earlier, and 20.0.5 and earlier, on both Windows and macOS platforms. This vulnerability has a high severity CVSS score of 8.8, indicating it can be exploited remotely with low complexity, requiring user interaction, and potentially leading to a memory leak, as well as high impacts on confidentiality, integrity, and availability. While there is no evidence of active exploitation (not in KEV or Hot List), public exploit code is not available, and community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 19.1.8CPE matchmatch criteria | cpe:2.3:a:adobe:photoshop_cc:*:*:*:*:*:*:*:* | ||
>= 20.0, <= 20.0.5CPE matchmatch criteria | cpe:2.3:a:adobe:photoshop_cc:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.