CVE-2017-11291: Adobe Connect

Critical severity, CVSS 10.0. EPSS: 5.5% chance of exploitation in the next 30 days.

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A Server-Side Request Forgery (SSRF) vulnerability exists that could be abused to bypass network access controls.

Affected products

  • Adobe Connect: up to and including 9.6.2

Published 2017-12-09. Last modified 2026-06-17.