# Adobe Acrobat/Reader flaw CVE-2023-26369 exploited

Published: 2023-09-12 · Severity: high
Canonical: https://vorant.io/reports/49a09ef7-8508-510b-94ba-2a799c78948b/adobe-acrobat-reader-flaw-cve-2023-26369-exploited

> Adobe patched an actively exploited Acrobat and Reader vulnerability (CVE-2023-26369) and urges immediate updates.

IPA (Japan's Information-technology Promotion Agency) issued an alert reiterating Adobe's APSB23-34 advisory, warning that CVE-2023-26369, a vulnerability affecting Adobe Acrobat and Reader, is being actively exploited in the wild. Adobe confirmed attacks leveraging this flaw, prompting IPA to urge users to apply the vendor's patches immediately.

Affected versions include Acrobat and Reader 23.003.20284 and earlier on Windows and macOS, as well as 20.005.30514/20.005.30516 and earlier on Windows and macOS respectively, spanning both Continuous and Classic tracks. Users are advised to update to the latest versions provided by Adobe to mitigate the risk of exploitation.

## Mentioned in this report

- Vulnerabilities: CVE-2023-26369 (KEV)

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2023/0913-adobereader.html

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/49a09ef7-8508-510b-94ba-2a799c78948b/adobe-acrobat-reader-flaw-cve-2023-26369-exploited.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
