CVE-2016-7886: Adobe Indesign

Critical severity, CVSS 9.8. EPSS: 6.3% chance of exploitation in the next 30 days.

Adobe InDesign version 11.4.1 and earlier, Adobe InDesign Server 11.0.0 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

Affected products

  • Adobe Indesign: up to and including 11.4.1
  • Adobe Indesign Server: up to and including 11.0.0

Published 2016-12-15. Last modified 2026-06-17.