Zero-dayApr 13, 2026
‼️ CVE-2026-34621: Adobe Acrobat Reader Prototype Pollution Zero-Day Enables Code Execution via M...
Adobe Acrobat Reader zero-day prototype pollution flaw enables code execution via malicious PDFs.
Vendor Watch
Run Adobe?
Get an email when a reviewed story names Adobe, usually within the hour.
Free. Your list stays private and never appears in a subject line. One click stops it. How Vendor Watch works
Summary
CVE-2026-34621 is a critical zero-day vulnerability in Adobe Acrobat Reader that exploits prototype pollution to achieve remote code execution when processing specially crafted PDF files. The vulnerability allows attackers to execute arbitrary code on affected systems through malicious PDF delivery.
Indicators of Compromise
- cve — CVE-2026-34621
Entities
Adobe Acrobat Reader (product)Adobe (vendor)