
Illustrator | Untrusted Search Path (CWE-426) CVE: CVE-2026-21333 PT-Identifier: PT-2026-24499 Vendor: Adobe Product: Illustrator CVSS: 8.6 Credits: n/a Description: Illustrator versions 29.8.4, 30.1 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-21333 • https://helpx.adobe.com/security/products/illustrator/apsb26-18.html #dbugs_vuln
Post summary
CVE‑2026‑21333 is an untrusted search path vulnerability in Adobe Illustrator that could lead to arbitrary code execution with user interaction; Adobe has released a patch, as referenced by its advisory.




