CVE-2015-7647: Adobe Flash Player

High severity, CVSS 10.0. EPSS: 29.5% chance of exploitation in the next 30 days.

Adobe Flash Player before 18.0.0.255 and 19.x before 19.0.0.226 on Windows and OS X and before 11.2.202.540 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-7648.

Affected products

  • Adobe Flash Player: up to and including 11.2.202.535; up to and including 19.0.0.207

Published 2015-10-18. Last modified 2026-06-17.