
CVE-2025-47105 – InDesign Desktop | Out-of-bounds Read (CWE-125)
https://notcve.org/view.php?id=CVE-2025-47105
10 Jun 2025 — InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-53.html • CWE-125: Out-of-bounds Read •

CVE-2025-47104 – InDesign Desktop | Out-of-bounds Read (CWE-125)
https://notcve.org/view.php?id=CVE-2025-47104
10 Jun 2025 — InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-53.html • CWE-125: Out-of-bounds Read •

CVE-2025-43593 – InDesign Desktop | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2025-43593
10 Jun 2025 — InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-53.html • CWE-787: Out-of-bounds Write •

CVE-2025-47106 – InDesign Desktop | Use After Free (CWE-416)
https://notcve.org/view.php?id=CVE-2025-47106
10 Jun 2025 — InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-53.html • CWE-416: Use After Free •

CVE-2025-43590 – InDesign Desktop | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2025-43590
10 Jun 2025 — InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-53.html • CWE-787: Out-of-bounds Write •

CVE-2025-30320 – InDesign Desktop | NULL Pointer Dereference (CWE-476)
https://notcve.org/view.php?id=CVE-2025-30320
13 May 2025 — InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption in service. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-37.html • CWE-476: NULL Pointer Dereference •

CVE-2025-30318 – InDesign Desktop | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2025-30318
13 May 2025 — InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-37.html • CWE-787: Out-of-bounds Write •

CVE-2025-30319 – InDesign Desktop | NULL Pointer Dereference (CWE-476)
https://notcve.org/view.php?id=CVE-2025-30319
13 May 2025 — InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing a disruption in service. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-37.html • CWE-476: NULL Pointer Dereference •

CVE-2025-27166 – InDesign Desktop | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2025-27166
11 Mar 2025 — InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-19.html • CWE-787: Out-of-bounds Write •

CVE-2025-27175 – InDesign Desktop | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2025-27175
11 Mar 2025 — InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/indesign/apsb25-19.html • CWE-787: Out-of-bounds Write •