Animate

Vendor:

First CVE: Dec 15, 2016 · Active for 9 years

108
Total CVEs
More Total CVEs than 99% of tracked products
13.5
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 44% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Animate over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 15, 2016
9 years ago
Most Recent CVE
Jul 14, 2026
11 days ago

CVE Severity & Scoring

Animate108 CVEs
All CVEs352,427 CVEs
LowMediumHighCritical
Attack Vector
Local103 (95.4%)
Network5 (4.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low105 (97.2%)
High3 (2.8%)
Unknown0 (0.0%)
User Interaction
None3 (2.8%)
Unknown0 (0.0%)
Required105 (97.2%)
Privileges Required
Low3 (2.8%)
High1 (0.9%)
None104 (96.3%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (108 CVEs).

108 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
Dec 15, 20169.842NOYES
Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in
Jul 14, 20268.234NONO
Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context
Jul 14, 20268.634NONO
Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyo
Jul 14, 20268.133NONO
Animate is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires
Jul 14, 20267.931NONO
Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in
Jul 14, 20267.731NONO
Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyo
Jul 14, 20267.730NONO
Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbit
Mar 12, 20217.828NONO
Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbit
Aug 24, 20217.827NONO
Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code
Mar 12, 20217.827NONO

Exploit Exposure

Signals from CVEs in this product scope (108 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
0.9% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (108 CVEs).

Media Mentions

Signals from CVEs in this product scope (108 CVEs).

Top CNAs Publishing CVEs For Animate

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
24.0.046.10.4%00
23.0.117.80.4%00
23.0.047.80.4%00