Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

cve CVE-2026-80159 1 source, 1 claim · Watch

NVD writes:
Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file. the claim

What it is to other things

affectsadobe/acrobat
NVD
affectsadobe/acrobat_dc
NVD
affectsadobe/acrobat_reader_dc
NVD
affectsapple/macos
NVD
affectsmicrosoft/windows
NVD
made_byadobe
NVD
made_byapple
NVD
made_bymicrosoft
NVD

In words only, so not counted until a person confirms one:

affectsadobe/adobe_acrobat
NVD says “Adobe · Adobe Acrobat”

What each source says

PropertySourceSaidMeans here
Cvss
cvss
NVD4
receipt
Source
NVD
Its words
4.0
Read by
field:cve.metrics.cvssMetricV31[].cvssData.baseScore
Said since
2026-09-29 09:45 UTC
Last answered
2026-10-02 18:04 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "defaultStatus": "unaffected",
            "product": "Adobe Acrobat",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat Reader",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat 2024",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "24.001.30383",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "24.001.30429",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "psirt@adobe.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
                "matchCriteriaId": "A6C6B745-7D94-43D9-BD26-1B26EE34DED4",
                "versionEndExcluding": "24.001.30429",
                "versionStartIncluding": "24.001.20604",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "B9192F4D-A119-46C4-A167-F500ACB3ACAB",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "2FEAAE8A-F164-4DCA-8F08-9BC646831744",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          },
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E",
                "vulnerable": false
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA",
                "vulnerable": false
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ],
        "operator": "AND"
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file."
      }
    ],
    "id": "CVE-2026-80159",
    "lastModified": "2026-09-10T21:17:47.627",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "HIGH",
            "attackVector": "LOCAL",
            "availabilityImpact": "NONE",
            "baseScore": 4.0,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "exploitabilityScore": 0.3,
          "impactScore": 3.6,
          "source": "psirt@adobe.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-80159",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "partial"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-10T20:41:03.546777Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-08T21:18:42.980",
    "references": [
      {
        "source": "psirt@adobe.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://helpx.adobe.com/security/products/acrobat/apsb26-141.html"
      }
    ],
    "sourceIdentifier": "psirt@adobe.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-426"
          }
        ],
        "source": "psirt@adobe.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Product
product
NVDAdobe Acrobat
receipt
Source
NVD
Its words
Adobe Acrobat
Read by
field:cve.affected[].affectedData[].product
Said since
2026-09-29 17:49 UTC
Last answered
2026-10-02 18:04 UTC
Original
open at the source
2026-09-29 17:49 UTCAdobe Acrobat
2026-09-29 09:45 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "defaultStatus": "unaffected",
            "product": "Adobe Acrobat",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat Reader",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat 2024",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "24.001.30383",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "24.001.30429",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "psirt@adobe.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
                "matchCriteriaId": "A6C6B745-7D94-43D9-BD26-1B26EE34DED4",
                "versionEndExcluding": "24.001.30429",
                "versionStartIncluding": "24.001.20604",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "B9192F4D-A119-46C4-A167-F500ACB3ACAB",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "2FEAAE8A-F164-4DCA-8F08-9BC646831744",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          },
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E",
                "vulnerable": false
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA",
                "vulnerable": false
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ],
        "operator": "AND"
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file."
      }
    ],
    "id": "CVE-2026-80159",
    "lastModified": "2026-09-10T21:17:47.627",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "HIGH",
            "attackVector": "LOCAL",
            "availabilityImpact": "NONE",
            "baseScore": 4.0,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "exploitabilityScore": 0.3,
          "impactScore": 3.6,
          "source": "psirt@adobe.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-80159",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "partial"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-10T20:41:03.546777Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-08T21:18:42.980",
    "references": [
      {
        "source": "psirt@adobe.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://helpx.adobe.com/security/products/acrobat/apsb26-141.html"
      }
    ],
    "sourceIdentifier": "psirt@adobe.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-426"
          }
        ],
        "source": "psirt@adobe.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Status
status
NVDAnalyzed
receipt
Source
NVD
Its words
Analyzed
Read by
field:cve.vulnStatus
Said since
2026-09-29 09:45 UTC
Last answered
2026-10-02 18:04 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "defaultStatus": "unaffected",
            "product": "Adobe Acrobat",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat Reader",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat 2024",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "24.001.30383",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "24.001.30429",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "psirt@adobe.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
                "matchCriteriaId": "A6C6B745-7D94-43D9-BD26-1B26EE34DED4",
                "versionEndExcluding": "24.001.30429",
                "versionStartIncluding": "24.001.20604",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "B9192F4D-A119-46C4-A167-F500ACB3ACAB",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "2FEAAE8A-F164-4DCA-8F08-9BC646831744",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          },
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E",
                "vulnerable": false
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA",
                "vulnerable": false
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ],
        "operator": "AND"
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file."
      }
    ],
    "id": "CVE-2026-80159",
    "lastModified": "2026-09-10T21:17:47.627",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "HIGH",
            "attackVector": "LOCAL",
            "availabilityImpact": "NONE",
            "baseScore": 4.0,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "exploitabilityScore": 0.3,
          "impactScore": 3.6,
          "source": "psirt@adobe.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-80159",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "partial"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-10T20:41:03.546777Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-08T21:18:42.980",
    "references": [
      {
        "source": "psirt@adobe.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://helpx.adobe.com/security/products/acrobat/apsb26-141.html"
      }
    ],
    "sourceIdentifier": "psirt@adobe.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-426"
          }
        ],
        "source": "psirt@adobe.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Vendor
vendor
NVDAdobe
receipt
Source
NVD
Its words
Adobe
Read by
field:cve.affected[].affectedData[].vendor
Said since
2026-09-29 17:49 UTC
Last answered
2026-10-02 18:04 UTC
Original
open at the source
2026-09-29 17:49 UTCAdobe
2026-09-29 09:45 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "defaultStatus": "unaffected",
            "product": "Adobe Acrobat",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat Reader",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "26.002.21900",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "26.002.21901",
                "versionType": "custom"
              }
            ]
          },
          {
            "defaultStatus": "unaffected",
            "product": "Acrobat 2024",
            "vendor": "Adobe",
            "versions": [
              {
                "lessThanOrEqual": "24.001.30383",
                "status": "affected",
                "version": "0",
                "versionType": "custom"
              },
              {
                "status": "unaffected",
                "version": "24.001.30429",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "psirt@adobe.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
                "matchCriteriaId": "A6C6B745-7D94-43D9-BD26-1B26EE34DED4",
                "versionEndExcluding": "24.001.30429",
                "versionStartIncluding": "24.001.20604",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "B9192F4D-A119-46C4-A167-F500ACB3ACAB",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
                "matchCriteriaId": "2FEAAE8A-F164-4DCA-8F08-9BC646831744",
                "versionEndExcluding": "26.002.21901",
                "versionStartIncluding": "15.008.20082",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          },
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E",
                "vulnerable": false
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA",
                "vulnerable": false
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ],
        "operator": "AND"
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file."
      }
    ],
    "id": "CVE-2026-80159",
    "lastModified": "2026-09-10T21:17:47.627",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "HIGH",
            "attackVector": "LOCAL",
            "availabilityImpact": "NONE",
            "baseScore": 4.0,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "exploitabilityScore": 0.3,
          "impactScore": 3.6,
          "source": "psirt@adobe.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-80159",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "partial"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-10T20:41:03.546777Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-08T21:18:42.980",
    "references": [
      {
        "source": "psirt@adobe.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://helpx.adobe.com/security/products/acrobat/apsb26-141.html"
      }
    ],
    "sourceIdentifier": "psirt@adobe.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-426"
          }
        ],
        "source": "psirt@adobe.com",
        "type": "Secondary"
      }
    ]
  }
}
—

vulnerability

Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
zetlyn/cve-nvd · 2026-09-08
cvss 4 product Adobe Acrobat status Analyzed vendor Adobe source