CVE List

CVE-2025-43594

Critical 7.8

InDesign Desktop versions 19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Published July 8, 2025.

Affected software

Get alerts for Adobe Indesign

Reference links