CVE-2026-79904

MEDIUMCVSS 5/10

Last modified

CVE-2026-79904 is a medium-severity vulnerability rated 5/10 on the CVSS scale. Photoshop Mobile is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to access unauthorized files or directories outside the intended restrictions.

Description

Photoshop Mobile is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to access unauthorized files or directories outside the intended restrictions. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Metrics

Weakness Enumeration

Affected Software

VendorProductVersions
AdobePhotoshop Mobile< 1.7.0.2302

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2026-79904?
Photoshop Mobile is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to access unauthorized files or directories outside the intended restrictions. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
How severe is CVE-2026-79904?
CVE-2026-79904 has a CVSS score of 5/10 (MEDIUM severity).
How do I fix CVE-2026-79904?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-79904?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST