CVE-2026-21335Disclosure(adobe / substance_3d_designer)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • substance_3d_designer

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-02-10); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
substance_3d_designer

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-10: 1Mentions · 2026-02-13: 1Technical Details · 2026-02-10: 102-1002-13
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-101
Disclosure1
2026-02-131
General1
Full discourse2 posts
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidades en productos Adobe ❗ CVE-2026-21357 ❗ CVE-2026-21335 ❗ CVE-2026-21318 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-adobe-4/ https://t.co/yjR3EDwiuW

    Post summary

    The message lists three Adobe CVE identifiers and directs readers to external URLs for more details, but it offers no concrete information on exploitation, patches, or technical specifics.

    00000102
    6.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-21335 Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context o… https://www.cve.org/CVERecord?id=CVE-2026-21335

    Post summary

    The statement announces CVE-2026-21335, noting an out‑of‑bounds write that could enable arbitrary code execution in Substance3D Designer, but it contains no PoC, exploit, patch, or evidence of active exploitation.

    0000090
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appadobesubstance_3d_designer---

Explore more