Junglewise Threat Intelligence

CVE-2026-84395: Adobe Premiere Pro server-side request forgery vulnerability

CVE-2026-84395 · Severity: high · CVSS 7.1 · Published 2026-09-22

Technologies: Adobe Premiere Pro. Vendors: Adobe.

Executive brief

Adobe Premiere Pro is susceptible to a Server-Side Request Forgery (SSRF) vulnerability that could allow an attacker to escalate privileges and gain unauthorized write access to the system. Since the vulnerability does not require user interaction to exploit, an attacker could potentially compromise the application remotely and modify critical data or system configurations.

Technical details

The vulnerability is an SSRF flaw in Premiere Pro that can be exploited to achieve privilege escalation and unauthorized write access. No user interaction is required for exploitation. The scope change indicates the vulnerability may impact system resources beyond the affected component itself.

Affected products

  • Adobe Premiere Pro

Timeline

  • 2026-09-22: disclosed

References

Related threats