CVE-2017-3086: Adobe Shockwave Player

Critical severity, CVSS 9.8. EPSS: 6.9% chance of exploitation in the next 30 days.

Adobe Shockwave versions 12.2.8.198 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

Affected products

  • Adobe Shockwave Player: up to and including 12.2.8.198

Published 2017-06-20. Last modified 2026-06-17.