LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-34615

CVE-2026-34615 - Vulnerability Analysis

CriticalCVSS: 9.3

Last Updated: April 15, 2026

Adobe Connect - Remote Code Execution

Published: April 14, 2026Updated: April 15, 2026Remote Exploitable

Overview

Adobe Connect <= 2025.3, 12.10 contains an insecure deserialization vulnerability caused by deserialization of untrusted data, letting attackers execute arbitrary code in the context of the current user, exploit requires no user interaction.

Severity & Score

Severity: Critical
CVSS Score: 9.3
EPSS Score: 155.8%(Probability of exploitation in next 30 days)

Impact

Attackers can execute arbitrary code as the current user, potentially leading to full system compromise.

Mitigation

Update to the latest version beyond 2025.3 or 12.10.

Social Media Activity(1 post)

ZEN SecDB
ZEN SecDB
@secdb
Apr 20, 2026

📈 CVE Published in last 7 days (2026-04-13 - 2026-04-20) See more at https://secdb.nttzen.cloud/dashboard Total CVEs: 1192 Severity: - Critical: 104 - High: 477 - Medium: 485 - Low: 67 - None: 59 Status: - : 27 - Analyzed: 155 - Awaiting Analysis: 421 - Deferred: 72 - Received: 270 - Rejected: 6 - Undergoing Analysis: 241 Top CNAs: - GitHub, Inc.: 234 - Microsoft Corporation: 163 - MITRE: 116 - Wordfence: 100 - VulDB: 77 - Adobe Systems Incorporated: 53 - Chrome: 31 - N/A: 27 - Fortinet, Inc.: 27 - VulnCheck: 23 Top Affected Products: - UNKNOWN: 856 - Microsoft Windows Server 2025: 121 - Microsoft Windows 11 24h2: 118 - Microsoft Windows 11 26h1: 117 - Microsoft Windows 11 25h2: 114 - Microsoft Windows Server 2022: 114 - Microsoft Windows 11 23h2: 113 - Microsoft Windows Server 23h2: 108 - Microsoft Windows 10 21h2: 105 - Microsoft Windows 10 22h2: 105 Top EPSS Score: - CVE-2026-6158 - 2.96 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6158) - CVE-2026-27303 - 1.50 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27303) - CVE-2026-34615 - 1.44 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-34615) - CVE-2026-6203 - 1.19 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6203) - CVE-2026-6349 - 0.95 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6349) - CVE-2026-6141 - 0.92 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6141) - CVE-2026-6138 - 0.89 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6138) - CVE-2026-6139 - 0.89 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6139) - CVE-2026-6140 - 0.89 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6140) - CVE-2026-6154 - 0.89 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-6154)

View original post

Details

CVE ID
CVE-2026-34615
Severity
Critical
CVSS Score
9.3
Type
insecure_deserialization
Status
unconfirmed
EPSS
155.8%
Social Posts
1

CWE

  • CWE-502

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N

EPSS Score

155.8%Probability of exploitation in the next 30 days