CVE-2018-4944: Adobe Flash Player

Critical severity, CVSS 9.8. EPSS: 8.6% chance of exploitation in the next 30 days.

Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Affected products

  • Adobe Flash Player: up to and including 29.0.0.140
  • Red Hat Enterprise Linux Desktop: version 6.0 only
  • Red Hat Enterprise Linux Server: version 6.0 only
  • Red Hat Enterprise Linux Workstation: version 6.0 only

Published 2018-05-19. Last modified 2026-06-17.