CVE-2020-9566 is an use-after-free vulnerability affecting Adobe Bridge versions 10.0.1 and earlier, as well as Microsoft Bridge on Windows. This high-severity vulnerability (CVSS 7.8) can lead to arbitrary code execution if a user is tricked into interacting with a malicious file. While no public exploit code or active exploitation has been observed, its potential for significant impact warrants attention. Community discussion and media coverage are minimal, suggesting limited public awareness despite the high risk score.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 10.0.1CPE matchmatch criteria | cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.