high
CISA KEV
CVE-2026-34621
Adobe Acrobat and Reader Prototype Pollution Vulnerability
// Description
Adobe Acrobat and Reader contain a prototype pollution vulnerability that allows for arbitrary code execution.
// Required action
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Federal remediation due Apr 27, 2026 — past due
Advertisement
// Coverage
- CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits
Apr 14, 2026
- CVE-2026-34621: Adobe Acrobat and Reader Zero-Day Emergency Patch
Apr 13, 2026
- CVE-2026-34621: Adobe Reader Zero-Day Exploited for Months Patched
Apr 12, 2026
- Adobe Acrobat Reader RCE via CVE-2026-34621 - Patch Now
Apr 12, 2026