VORANT. Threat Intelligence Sign in Get the full feed

Adobe Acrobat/Reader flaw CVE-2023-26369 exploited

high vulnerability

Adobe patched an actively exploited Acrobat and Reader vulnerability (CVE-2023-26369) and urges immediate updates.

IPA (Japan's Information-technology Promotion Agency) issued an alert reiterating Adobe's APSB23-34 advisory, warning that CVE-2023-26369, a vulnerability affecting Adobe Acrobat and Reader, is being actively exploited in the wild. Adobe confirmed attacks leveraging this flaw, prompting IPA to urge users to apply the vendor's patches immediately.

Affected versions include Acrobat and Reader 23.003.20284 and earlier on Windows and macOS, as well as 20.005.30514/20.005.30516 and earlier on Windows and macOS respectively, spanning both Continuous and Classic tracks. Users are advised to update to the latest versions provided by Adobe to mitigate the risk of exploitation.

Mentioned in this report

Vulnerabilities CVE-2023-26369KEV

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2023/0913-adobereader.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free