Loading market data...
← Back to CVE feed

CVE-2026-34675

HIGH CVSS 7.8 View on NVD ↗

Description

Substance3D - Painter versions 12.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

adobe/substance_3d_painter
Published: May 12, 2026 18:17 UTC Modified: May 12, 2026 19:51 UTC