CVE-2024-20709: Adobe Acrobat
Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.
Acrobat Reader T5 (MSFT Edge) versions 120.0.2210.91 and earlier are affected by an Improper Input Validation vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products
- Adobe Acrobat: up to and including 120.0.2210.91
- Microsoft Edge Chromium: before 120.0.2210.133 (fixed in 120.0.2210.133)
Published 2024-01-15. Last modified 2026-06-17.