Junglewise Threat Intelligence

CVE-2026-27292: Adobe FrameMaker use after free vulnerability

CVE-2026-27292 · Severity: high · CVSS 7.8 · Published 2026-04-14

Technologies: Microsoft Windows, Adobe Framemaker. Vendors: Microsoft, Adobe.

Executive brief

Adobe FrameMaker, a professional document authoring and publishing tool, is affected by a security vulnerability that could allow an attacker to take control of a user's system. To exploit this, an attacker would need to trick a user into opening a specially crafted malicious file. Successful exploitation could lead to unauthorized software execution, potentially compromising sensitive data or disrupting business operations.

Technical details

A Use After Free (CWE-416) vulnerability exists in Adobe FrameMaker versions 2022.8 and earlier. The flaw occurs when the application continues to use a pointer after it has been freed, leading to memory corruption. An attacker can exploit this by inducing a user to open a maliciously crafted file, which can trigger arbitrary code execution in the context of the current user. The attack vector is local (AV:L) and requires user interaction (UI:R). Adobe has addressed this in newer versions, such as 2022.9.

Affected products

  • Adobe FrameMaker 2022.8 and earlier

Timeline

  • 2026-04-14: disclosed
  • 2026-04-14: advisory

References

Related threats