CVE-2018-4943: Adobe Push Notifications

High severity, CVSS 8.8. EPSS: 6.5% chance of exploitation in the next 30 days.

Adobe PhoneGap Push Plugin versions 1.8.0 and earlier have an exploitable Same-Origin Method Execution vulnerability. Successful exploitation could lead to JavaScript code execution in the context of the PhoneGap app.

Affected products

  • Adobe Push Notifications: up to and including 1.8.0

Published 2018-05-19. Last modified 2026-06-17.