---
id: CVE-2026-80161
title: >-
  Acrobat Reader is affected by an Access of Resource Using Incompatible Type
  ('Type Confusion') vulnerability that could result in arbitrary code execution
  in the context of the current user
summary: >-
  Acrobat Reader is affected by an Access of Resource Using Incompatible Type
  ('Type Confusion') vulnerability that could result in arbitrary code execution
  in the context of the current user. An attacker could exploit this
  vulnerability t…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-843
vendor: adobe
product: acrobat
affected:
  - 'acrobat >= 24.001.20604, < 24.001.30429'
  - 'acrobat_dc >= 15.008.20082, < 26.002.21901'
  - 'acrobat_reader_dc >= 15.008.20082, < 26.002.21901'
patched:
  - acrobat 24.001.30429
  - acrobat_dc 26.002.21901
  - acrobat_reader_dc 26.002.21901
published: '2026-09-08'
updated: '2026-09-10'
sourceUpdated: '2026-09-10T15:56:54.100'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-80161'
references:
  - url: 'https://helpx.adobe.com/security/products/acrobat/apsb26-141.html'
    label: psirt@adobe.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-09-10T03:55:18.147953Z'
epss: 0.00293
epssPercentile: 0.19537
ingestedAt: '2026-09-08T21:11:12.369Z'
---

## Overview

Acrobat Reader is affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

## Affected

- `acrobat >= 24.001.20604, < 24.001.30429`
- `acrobat_dc >= 15.008.20082, < 26.002.21901`
- `acrobat_reader_dc >= 15.008.20082, < 26.002.21901`

## Remediation

Upgrade past the affected range:

- `acrobat 24.001.30429`
- `acrobat_dc 26.002.21901`
- `acrobat_reader_dc 26.002.21901`
