PT-2026-7387 · Adobe · Substance3D - Designer

Jann Horn

·

Published

2026-02-10

·

Updated

2026-02-10

·

CVE-2026-21337

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Substance3D - Designer versions 15.1.0 and earlier
Description The software for 3D model texturing, Substance 3D Designer, has an Out-of-bounds Read issue that may result in memory exposure. An attacker could potentially access sensitive information stored in memory by exploiting this issue. Successful exploitation requires a user to open a specially crafted malicious file.
Recommendations Versions prior to 15.1.0 should be updated.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2026-01932
CVE-2026-21337

Affected Products

Substance3D - Designer