CVE-2021-36052: Adobe Xmp Toolkit Software Development Kit

High severity, CVSS 7.8. EPSS: 3.2% chance of exploitation in the next 30 days.

XMP Toolkit version 2020.1 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

Affected products

  • Adobe Xmp Toolkit Software Development Kit: up to and including 2020.1
  • Debian Debian Linux: version 10.0 only

Published 2021-09-01. Last modified 2026-06-17.