CVE-2024-30293 is a stack-based buffer overflow vulnerability affecting Adobe Animate versions 24.0.2, 23.0.5, and earlier on Windows and macOS. This high-severity flaw (CVSS 7.8) requires user interaction, specifically opening a malicious file, to achieve arbitrary code execution in the context of the current user. While no public exploits or active exploitation are currently reported, its potential for complete compromise of confidentiality, integrity, and availability makes it a significant risk. Community discussion and media coverage are minimal, suggesting limited public awareness at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 23.0.0, < 23.0.6CPE matchmatch criteria | cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* | ||
>= 24.0.0, < 24.0.3CPE matchmatch criteria | cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* | ||
>= 0, <= 23.0.5CPE match | cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.