5.9mediumMedium
CVE-2026-48308
Adobe Premiere Pro
Premiere Pro is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
Exploitation status
- A vendor advisory or patch reference has been published.
What the metrics mean
- It is requires local access to the machine.
- For an attacker who can reach it, exploitation depends on conditions outside the attacker's control.
- To exploit it, no account is needed.
- Beyond that, no action by a user is required.
Scoring
- CVSS
- 5.9 (v3.1)
- Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N- Weakness
- CWE-20
- Assigned by
- psirt@adobe.com
Dates
- Published
- 2026-07-14
- Last modified
- 2026-08-28
- Sources
- NVD
Affected products
- Adobe Premiere Pro- 25.6.5, 26.0 - 26.2.2
As listed in the NVD configuration data. Not a statement about your estate.