CVE-2018-16042: Adobe Acrobat DC

Medium severity, CVSS 6.5. EPSS: 82.4% chance of exploitation in the next 30 days.

Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a security bypass vulnerability. Successful exploitation could lead to information disclosure.

Affected products

  • Adobe Acrobat DC: from 15.006.30060, up to and including 15.006.30457; from 15.008.20082, up to and including 19.008.20081; from 17.011.30056, up to and including 17.011.30106; from 15.006.30060, up to and including 15.006.30456; from 15.008.20082, up to and including 19.008.20080; from 17.011.30056, up to and including 17.011.30105
  • Adobe Acrobat Reader DC: from 15.006.30060, up to and including 15.006.30457; from 15.008.20082, up to and including 19.008.20081; from 17.011.30059, up to and including 17.011.30106; from 15.006.30060, up to and including 15.006.30456; from 15.008.20082, up to and including 19.008.20080; from 17.011.30059, up to and including 17.011.30105
  • Adobe Reader: version 11.0.10 only; version 11.0.23 only
  • Iskysoft PDF Editor 6: version 6.4.2.3521 only; version 6.6.2.3315 only; version 6.7.6.3399 only
  • Iskysoft PDFELEMENT6: version 6.8.0.3523 only; version 6.8.4.3921 only; version 6.7.1.3355 only; version 6.7.6.3399 only

Published 2019-01-18. Last modified 2026-06-17.