CVE-2026-21354Disclosure(adobe / dng_software_development_kit)

LOWCVSS 5.5 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

DNG SDK versions 1.7.1 2410 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to cause the application to crash or become unresponsive. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dng_software_development_kit

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
dng_software_development_kit

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-10: 2Technical Details · 2026-02-10: 202-10
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets3 URLs
Full discourse2 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-21354 Integer Overflow Vulnerability in DNG SDK Versions 1.7.1 2410 and... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-21354 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    A brief notice about CVE-2026-21354, an integer overflow in DNG SDK, with a link to a vulnerability details page but no additional exploit, patch, or PoC information.

    0001054
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-21354 DNG SDK versions 1.7.1 2410 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker … https://www.cve.org/CVERecord?id=CVE-2026-21354

    Post summary

    The text announces that DNG SDK versions 1.7.1 and earlier contain an integer overflow vulnerability leading to denial-of-service, with no exploitation or patch details mentioned.

    0001080
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appadobedng_software_development_kit---

Explore more