CVE-2026-34635
Received Received - Intake

Use of Hard-coded Cryptographic Key in Adobe Product

Vulnerability report for CVE-2026-34635, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-11

Last updated on: 2026-08-11

Assigner: Adobe Systems Incorporated

Description

is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and gain unauthorized read and write access. Exploitation of this issue does not require user interaction. Scope is changed.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-11
Last Modified
2026-08-11
Generated
2026-08-11
AI Q&A
2026-08-11
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-321 The product uses a hard-coded, unchangeable cryptographic key.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves the use of hard-coded cryptographic keys, which are fixed keys embedded in the software. An attacker with low privileges could exploit this to bypass security features and gain unauthorized access to read or modify data without user interaction.

Impact Analysis

An attacker could bypass security measures to access sensitive data or alter system behavior. Since exploitation does not require user interaction, the risk is higher as it can be automated and executed remotely.

Compliance Impact

This vulnerability could lead to unauthorized data access or modification, violating confidentiality and integrity requirements in GDPR and HIPAA. Compliance may be compromised due to the failure to protect cryptographic keys properly.

Mitigation Strategies

Review all cryptographic keys in the system to ensure none are hard-coded. Replace any hard-coded keys with secure alternatives. Restrict access to cryptographic key storage and enforce least privilege principles.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-34635. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart