CVE-2021-36073: Adobe Bridge

High severity, CVSS 7.8. EPSS: 7.6% chance of exploitation in the next 30 days.

Adobe Bridge version 11.1 (and earlier) is affected by a heap-based buffer overflow vulnerability when parsing a crafted .SGI file. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected products

  • Adobe Bridge: up to and including 11.1

Published 2021-09-01. Last modified 2026-06-17.