Acrobat Reader Dc

Vendor:

First CVE: Sep 17, 2014 · Active for 11 years

1,799
Total CVEs
More Total CVEs than 100% of tracked products
138.4
Avg CVEs / Year
Higher CVE frequency than 100% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 67% of tracked products
0.4%
KEV Rate
Higher KEV Rate than 96% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Acrobat Reader Dc over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 17, 2014
11 years ago
Most Recent CVE
Jun 23, 2026
30 days ago

CVE Severity & Scoring

Acrobat Reader Dc1,799 CVEs
All CVEs352,101 CVEs
LowMediumHighCritical
Attack Vector
Local651 (36.2%)
Network1,043 (58.0%)
Unknown105 (5.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1,688 (93.8%)
High6 (0.3%)
Unknown105 (5.8%)
User Interaction
None608 (33.8%)
Unknown105 (5.8%)
Required1,086 (60.4%)
Privileges Required
Low16 (0.9%)
High0 (0.0%)
None1,678 (93.3%)
Unknown105 (5.8%)

Top CVEs

Signals from CVEs in this product scope (1799 CVEs).

1,799 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a heap-based buffer overflow vulnera
Feb 11, 20218.894YESNO
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by a Use After Free vulnerability that could result
Jan 18, 20237.889YESNO
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use After Free vulnerability. An u
Sep 2, 20218.887YESNO
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have an use-after-free vulnerability. Succe
Aug 19, 20207.886YESNO
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free vulnerability. Successful exploitation c
Jul 9, 20188.883YESNO
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an NTLM SSO hash theft vulnerability. Successful explo
Jul 9, 20187.581NOYES
Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerab
Apr 11, 20268.680YESNO
Acrobat Reader versions 23.003.20284 (and earlier), 20.005.30516 (and earlier) and 20.005.30514 (and earlier) are affected by an out-of-bounds write vulnerability that could result
Sep 13, 20237.868YESNO
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by an out-of-bounds write vulnerability that cou
Sep 29, 20217.866NONO
Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier
Jan 18, 20196.566NONO

Exploit Exposure

Signals from CVEs in this product scope (1799 CVEs).

CISA KEV
7 CVEs
0.4% of CVEs· 96th percentile
Metasploit
1 CVE
0.1% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
25 CVEs
1.4% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (1799 CVEs).

Media Mentions

Signals from CVEs in this product scope (1799 CVEs).

Top CNAs Publishing CVEs For Acrobat Reader Dc

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
20.001.30002266.85.3%10
15.006.3011918.41.1%00