CVE-2026-48308

MEDIUM

Premiere Pro | Improper Input Validation (CWE-20)

Title source: cna
STIX 2.1

Description

Premiere Pro is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.

References (1)

Core 1
Core References

Scores

CVSS v3 5.9
EPSS 0.0015
EPSS Percentile 4.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-20
Status published
Products (5)
Adobe/Premiere < 25.6.5
Adobe/Premiere < 26.2.2
Adobe/Premiere 25.6.6
Adobe/Premiere 26.3
adobe/premiere_pro < 25.6.5
Published Jul 14, 2026
Tracked Since Jul 15, 2026