CVE-2025-54268: Adobe Bridge

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Bridge versions 14.1.8, 15.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected products

  • Adobe Bridge: before 14.1.9 (fixed in 14.1.9); from 15.0, before 15.1.2 (fixed in 15.1.2)

Published 2025-10-15. Last modified 2026-10-08.