CVE-2019-7040: Adobe Acrobat DC
Critical severity, CVSS 9.8. EPSS: 5.5% chance of exploitation in the next 30 days.
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .
Affected products
- Adobe Acrobat DC: from 15.006.30060, up to and including 15.006.30464; from 15.008.20082, up to and including 19.010.20069; from 17.011.30059, up to and including 17.011.30113
- Adobe Acrobat Reader DC: from 15.006.30060, up to and including 15.006.30464; from 15.008.20082, up to and including 19.010.20069; from 17.011.30059, up to and including 17.011.30113
Published 2019-05-24. Last modified 2026-06-17.