CVE-2018-12829: Adobe Creative Cloud

Critical severity, CVSS 9.8. EPSS: 5.1% chance of exploitation in the next 30 days.

Adobe Creative Cloud Desktop Application before 4.6.1 has an improper certificate validation vulnerability. Successful exploitation could lead to privilege escalation.

Affected products

  • Adobe Creative Cloud: before 4.6.1 (fixed in 4.6.1)

Published 2018-08-29. Last modified 2026-06-17.