---
id: CVE-2026-75655
title: >-
  Bridge is affected by an Uncontrolled Recursion vulnerability that could
  result in arbitrary code execution in the context of the current user
summary: >-
  Bridge is affected by an Uncontrolled Recursion vulnerability that could
  result in arbitrary code execution in the context of the current user. An
  attacker could exploit this vulnerability to execute arbitrary code.
  Exploitation of this …
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-674
vendor: Adobe
product: Adobe Bridge
affected:
  - bridge <= 16.0.6
  - bridge <= 15.1.7
published: '2026-09-22'
updated: '2026-09-23'
sourceUpdated: '2026-09-23T04:17:44.613'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-75655'
references:
  - url: 'https://helpx.adobe.com/security/products/bridge/apsb26-148.html'
    label: psirt@adobe.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-09-22T19:25:58.474744Z'
ingestedAt: '2026-09-22T19:09:09.998Z'
epss: 0.00293
epssPercentile: 0.22173
---

## Overview

Bridge is affected by an Uncontrolled Recursion vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
