Substance 3d Painter
Vendor:
First CVE: May 11, 2023 · Active for 3 years
78
Total CVEs
More Total CVEs than 99% of tracked products
19.5
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 42% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Substance 3d Painter over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 11, 2023
3 years ago
Most Recent CVE
May 12, 2026
76 days ago
CVE Severity & Scoring
Substance 3d Painter78 CVEs
41%
59%
All CVEs352,785 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local78 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low78 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None0 (0.0%)
Unknown0 (0.0%)
Required78 (100.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None78 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (78 CVEs).
78 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-34676HIGH Substance3D - Painter versions 12.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current u | May 12, 2026 | 7.8 | 28 | NO | NO |
CVE-2026-34675HIGH Substance3D - Painter versions 12.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current u | May 12, 2026 | 7.8 | 28 | NO | NO |
CVE-2026-21305HIGH Substance3D - Painter versions 11.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current u | Jan 13, 2026 | 7.8 | 28 | NO | NO |
CVE-2024-47429HIGH Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current u | Nov 12, 2024 | 7.8 | 25 | NO | NO |
CVE-2023-29273HIGH Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of | May 11, 2023 | 7.8 | 25 | NO | NO |
CVE-2025-54187HIGH Substance3D - Painter versions 11.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current u | Aug 12, 2025 | 7.8 | 24 | NO | NO |
CVE-2023-29285HIGH Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the curr | May 11, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-29283HIGH Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of th | May 11, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-29282HIGH Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the curr | May 11, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-29281HIGH Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of | May 11, 2023 | 7.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (78 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (78 CVEs).
Media Mentions
Signals from CVEs in this product scope (78 CVEs).
Top CNAs Publishing CVEs For Substance 3d Painter
Top CWEs
Versions
No cataloged versions.