Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 08 Sep 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe adobe Animate 2023 Adobe adobe Animate 2024 |
|
| Vendors & Products |
Adobe
Adobe adobe Animate 2023 Adobe adobe Animate 2024 |
Tue, 08 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. | |
| Title | Animate | Improper Control of Generation of Code ('Code Injection') (CWE-94) | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2026-09-08T17:36:38.844Z
Reserved: 2026-08-19T11:07:04.550Z
Link: CVE-2026-76191
No data.
Status : Awaiting Analysis
Published: 2026-09-08T18:20:33.240
Modified: 2026-09-08T18:35:42.017
Link: CVE-2026-76191
No data.
OpenCVE Enrichment
Updated: 2026-09-08T18:45:05Z
Weaknesses