Adobe fixes PDF zero-day security bug that hackers have exploited for months
image via TechCrunch
April 14, 2026, 2:35 PM
- •Adobe has patched a vulnerability in Acrobat DC, Reader DC, and Acrobat 2024.
- •The vulnerability, CVE-2026-34621, allows remote malware installation.
- •Hackers exploited the vulnerability for at least four months.
- •Users are urged to update their software immediately.
Adobe has patched a critical vulnerability, CVE-2026-34621, in Acrobat DC, Reader DC, and Acrobat 2024 that hackers have been actively exploiting for at least four months. The flaw allows remote malware installation via malicious PDF files on Windows and macOS, potentially giving hackers full control of victims' systems. The vulnerability, discovered by security researcher Haifei Li, was being used in zero-day attacks, meaning it was exploited before a fix was available. Adobe urges users to update their software immediately to mitigate the risk.
Entities Mentioned
Haifei LiSam AltmanZack Whittaker
Topics Covered
SecurityAdobecyberattackcybersecurityexploitPDF
Comments (0)
No comments yet.