
Illustrator | Heap-based Buffer Overflow (CWE-122) CVE: CVE-2026-27271 PT-Identifier: PT-2026-24504 Vendor: Adobe Product: Illustrator CVSS: 7.8 Credits: n/a Description: Illustrator versions 29.8.4, 30.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-27271 • https://helpx.adobe.com/security/products/illustrator/apsb26-18.html #dbugs_vuln
Post summary
Adobe Illustrator versions 29.8.4 and 30.1 are vulnerable to CVE-2026-27271, a heap-based buffer overflow that could lead to arbitrary code execution via a malicious file, and an Adobe advisory provides the patch details.


