UNCOS

Adobe fixes PDF zero-day security bug that hackers have exploited for months

Adobe fixes PDF zero-day security bug that hackers have exploited for months

image via TechCrunch

April 14, 2026, 2:35 PM

  • Adobe has patched a vulnerability in Acrobat DC, Reader DC, and Acrobat 2024.
  • The vulnerability, CVE-2026-34621, allows remote malware installation.
  • Hackers exploited the vulnerability for at least four months.
  • Users are urged to update their software immediately.

Adobe has patched a critical vulnerability, CVE-2026-34621, in Acrobat DC, Reader DC, and Acrobat 2024 that hackers have been actively exploiting for at least four months. The flaw allows remote malware installation via malicious PDF files on Windows and macOS, potentially giving hackers full control of victims' systems. The vulnerability, discovered by security researcher Haifei Li, was being used in zero-day attacks, meaning it was exploited before a fix was available. Adobe urges users to update their software immediately to mitigate the risk.

Read original article

Entities Mentioned

Haifei LiSam AltmanZack Whittaker

Topics Covered

SecurityAdobecyberattackcybersecurityexploitPDF

Comments (0)

No comments yet.