Every CVE whose affected-product data names Adobe Lightroom, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (19)
CVE-2026-48397 — CVSS 8.6 (high): Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the…
CVE-2026-48441 — CVSS 8.6 (high): Lightroom Classic is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could…
CVE-2021-43753 — CVSS 7.8 (high): Adobe Lightroom versions 4.4 (and earlier) are affected by a use-after-free vulnerability in the processing of parsing TIF files that could…
CVE-2024-20754 — CVSS 7.8 (high): Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code…
CVE-2026-48410 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2025-27197 — CVSS 7.8 (high): Lightroom Desktop versions 8.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code…
CVE-2026-21349 — CVSS 7.8 (high): Lightroom Desktop versions 15.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code…
CVE-2026-47940 — CVSS 7.8 (high): Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the…
CVE-2026-48404 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2026-48405 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2026-48406 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2026-48407 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2026-48409 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2026-48408 — CVSS 7.8 (high): Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the…
CVE-2020-9724 — CVSS 7.8 (high): Adobe Lightroom versions 9.2.0.10 and earlier have an insecure library loading vulnerability. Successful exploitation could lead to…
CVE-2026-48447 — CVSS 7.7 (high): Lightroom Classic is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of…
CVE-2020-24447 — CVSS 7.0 (high): Adobe Lightroom Classic version 10.0 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result…
CVE-2021-40776 — CVSS 6.1 (medium): Adobe Lightroom Classic 10.3 (and earlier) are affected by a privilege escalation vulnerability in the Offline Lightroom Classic installer…
CVE-2024-45145 — CVSS 5.5 (medium): Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to…