Alert GCSA-26036 - Adobe Security Bulletin - Marzo 2026
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
******************************************************************
Alert ID: GCSA-26036
Data: 11 Marzo 2026
Titolo: Adobe Security Bulletin - Marzo 2026
******************************************************************
:: Descrizione del problema
Adobe ha rilasciato i seguenti aggiornamenti di sicurezza:
APSB26-05 : Security update available for Adobe Commerce
APSB26-18 : Security Updates Available for Adobe Illustrator
APSB26-25 : Security updates available for Substance 3D Painter
APSB26-26 : Security update available for Adobe Acrobat Reader
APSB26-28 : Security Updates Available for Adobe Premiere Pro
APSB26-24 : Security updates available for Adobe Experience Manager
APSB26-29 : Security updates available for Substance 3D Stager
APSB26-30 : Security update available for Adobe DNG Software Development Kit (SDK)
Maggiori informazioni sono disponibili alla sezione "Riferimenti".
:: Software interessato
Adobe Commerce 2.4.9-alpha3 e versioni precedenti
Adobe Commerce 2.4.8‑p3 e versioni precedenti
Adobe Commerce 2.4.7-p8 e versioni precedenti
Adobe Commerce 2.4.6-p13 e versioni precedenti
Adobe Commerce 2.4.5-p15 e versioni precedenti
Adobe Commerce 2.4.4-p16 e versioni precedenti
Adobe Commerce B2B 1.5.3-alpha3 e versioni precedenti
Adobe Commerce B2B 1.5.2‑p3 e versioni precedenti
Adobe Commerce B2B 1.4.2-p8 e versioni precedenti
Adobe Commerce B2B 1.3.5-p13 e versioni precedenti
Adobe Commerce B2B 1.3.4-p15 e versioni precedenti
Adobe Commerce B2B 1.3.3-p16 e versioni precedenti
Magento Open Source 2.4.9-alpha3
Magento Open Source 2.4.8-p3 e versioni precedenti
Magento Open Source 2.4.7-p8 e versioni precedenti
Magento Open Source 2.4.6-p13 e versioni precedenti
Magento Open Source 2.4.5-p15 e versioni precedenti
Illustrator 2025 29.8.4 e versioni precedenti
Illustrator 2026 30.1 e versioni precedenti
Adobe Substance 3D Painter 11.1.2 e versioni precedenti
Acrobat DC 25.001.21265 e versioni precedenti
Acrobat Reader DC 25.001.21265 e versioni precedenti
Acrobat 2024 Win - 24.001.30307 e versioni precedenti
Acrobat 2024 Mac - 24.001.30308 e versioni precedenti
Adobe Premiere Pro 25.5 e versioni precedenti
Adobe Experience Manager (AEM) AEM Cloud Service (CS)
Adobe Experience Manager (AEM) 6.5 LTS SP1 e versioni precedenti
Adobe Experience Manager (AEM) 6.5.SP23 e versioni precedenti
Adobe Substance 3D Stager 3.1.7 e versioni precedenti
Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2471 e versioni precedenti
:: Impatto
Remote Code Execution
Denial of Service
Information Disclosure
Cross-Site Scripting
Elevation of Privilege
Security Restriction Bypass
:: Soluzioni
Aggiornare i software all'ultima versione:
Adobe Commerce 2.4.9‑beta1
Adobe Commerce 2.4.8‑p4
Adobe Commerce 2.4.7‑p9
Adobe Commerce 2.4.6‑p14
Adobe Commerce 2.4.5‑p16
Adobe Commerce 2.4.4‑p17
Adobe Commerce B2B 1.5.3‑beta1
Adobe Commerce B2B 1.5.2‑p4
Adobe Commerce B2B 1.4.2‑p9
Adobe Commerce B2B 1.3.5‑p14
Adobe Commerce B2B 1.3.4‑p16
Adobe Commerce B2B 1.3.3‑p17
Magento Open Source 2.4.9‑beta1
Magento Open Source 2.4.8‑p4
Magento Open Source 2.4.7‑p9
Magento Open Source 2.4.6‑p14
Magento Open Source 2.4.5‑p16
Illustrator 2025 29.8.5
Illustrator 2026 30.2
Adobe Substance 3D Painter 11.1.3
Acrobat DC 25.001.21288
Acrobat Reader DC 25.001.21288
Acrobat 2024 24.001.30356
Adobe Premiere 26.0
Adobe Premiere Pro 25.6 LTS
Adobe Experience Manager (AEM) AEM Cloud Service (CS) Release 2026.02
Adobe Experience Manager (AEM) 6.5 LTS Service Pack 2
Adobe Experience Manager (AEM) 6.5 Service Pack 24
Adobe Substance 3D Stager 3.1.8
Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2502
:: Riferimenti
Adobe Security Bulletins e Advisories
https://helpx.adobe.com/security/security-bulletin.html
https://helpx.adobe.com/security/products/magento/apsb26-05.html
https://helpx.adobe.com/security/products/illustrator/apsb26-18.html
https://helpx.adobe.com/security/products/substance3d_painter/apsb26-25.html
https://helpx.adobe.com/security/products/acrobat/apsb26-26.html
https://helpx.adobe.com/security/products/premiere_pro/apsb26-28.html
https://helpx.adobe.com/security/products/experience-manager/apsb26-24.html
https://helpx.adobe.com/security/products/substance3d_stager/apsb26-29.html
https://helpx.adobe.com/security/products/dng-sdk/apsb26-30.html
Mitre CVE
https://www.cvedetails.com/vulnerability-list.php?vendor_id=53&year=2026&month=03
GARR CERT Security Alert - subscribe/unsubscribe:
http://www.cert.garr.it/alert/ricevi-gli-alert-di-cert
-----BEGIN PGP SIGNATURE-----
iGsEAREIACsWIQTGpdiR5MqstacBGHbBnEyTZRJgQgUCabEySw0cY2VydEBnYXJy
Lml0AAoJEMGcTJNlEmBCpvUAn0Er294kfsQUr8YPxENbdt9ozNhSAKDDrjjeJGru
iwMw3jC61e56KIRNdw==
=KtQQ
-----END PGP SIGNATURE-----
Hash: SHA256
******************************************************************
Alert ID: GCSA-26036
Data: 11 Marzo 2026
Titolo: Adobe Security Bulletin - Marzo 2026
******************************************************************
:: Descrizione del problema
Adobe ha rilasciato i seguenti aggiornamenti di sicurezza:
APSB26-05 : Security update available for Adobe Commerce
APSB26-18 : Security Updates Available for Adobe Illustrator
APSB26-25 : Security updates available for Substance 3D Painter
APSB26-26 : Security update available for Adobe Acrobat Reader
APSB26-28 : Security Updates Available for Adobe Premiere Pro
APSB26-24 : Security updates available for Adobe Experience Manager
APSB26-29 : Security updates available for Substance 3D Stager
APSB26-30 : Security update available for Adobe DNG Software Development Kit (SDK)
Maggiori informazioni sono disponibili alla sezione "Riferimenti".
:: Software interessato
Adobe Commerce 2.4.9-alpha3 e versioni precedenti
Adobe Commerce 2.4.8‑p3 e versioni precedenti
Adobe Commerce 2.4.7-p8 e versioni precedenti
Adobe Commerce 2.4.6-p13 e versioni precedenti
Adobe Commerce 2.4.5-p15 e versioni precedenti
Adobe Commerce 2.4.4-p16 e versioni precedenti
Adobe Commerce B2B 1.5.3-alpha3 e versioni precedenti
Adobe Commerce B2B 1.5.2‑p3 e versioni precedenti
Adobe Commerce B2B 1.4.2-p8 e versioni precedenti
Adobe Commerce B2B 1.3.5-p13 e versioni precedenti
Adobe Commerce B2B 1.3.4-p15 e versioni precedenti
Adobe Commerce B2B 1.3.3-p16 e versioni precedenti
Magento Open Source 2.4.9-alpha3
Magento Open Source 2.4.8-p3 e versioni precedenti
Magento Open Source 2.4.7-p8 e versioni precedenti
Magento Open Source 2.4.6-p13 e versioni precedenti
Magento Open Source 2.4.5-p15 e versioni precedenti
Illustrator 2025 29.8.4 e versioni precedenti
Illustrator 2026 30.1 e versioni precedenti
Adobe Substance 3D Painter 11.1.2 e versioni precedenti
Acrobat DC 25.001.21265 e versioni precedenti
Acrobat Reader DC 25.001.21265 e versioni precedenti
Acrobat 2024 Win - 24.001.30307 e versioni precedenti
Acrobat 2024 Mac - 24.001.30308 e versioni precedenti
Adobe Premiere Pro 25.5 e versioni precedenti
Adobe Experience Manager (AEM) AEM Cloud Service (CS)
Adobe Experience Manager (AEM) 6.5 LTS SP1 e versioni precedenti
Adobe Experience Manager (AEM) 6.5.SP23 e versioni precedenti
Adobe Substance 3D Stager 3.1.7 e versioni precedenti
Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2471 e versioni precedenti
:: Impatto
Remote Code Execution
Denial of Service
Information Disclosure
Cross-Site Scripting
Elevation of Privilege
Security Restriction Bypass
:: Soluzioni
Aggiornare i software all'ultima versione:
Adobe Commerce 2.4.9‑beta1
Adobe Commerce 2.4.8‑p4
Adobe Commerce 2.4.7‑p9
Adobe Commerce 2.4.6‑p14
Adobe Commerce 2.4.5‑p16
Adobe Commerce 2.4.4‑p17
Adobe Commerce B2B 1.5.3‑beta1
Adobe Commerce B2B 1.5.2‑p4
Adobe Commerce B2B 1.4.2‑p9
Adobe Commerce B2B 1.3.5‑p14
Adobe Commerce B2B 1.3.4‑p16
Adobe Commerce B2B 1.3.3‑p17
Magento Open Source 2.4.9‑beta1
Magento Open Source 2.4.8‑p4
Magento Open Source 2.4.7‑p9
Magento Open Source 2.4.6‑p14
Magento Open Source 2.4.5‑p16
Illustrator 2025 29.8.5
Illustrator 2026 30.2
Adobe Substance 3D Painter 11.1.3
Acrobat DC 25.001.21288
Acrobat Reader DC 25.001.21288
Acrobat 2024 24.001.30356
Adobe Premiere 26.0
Adobe Premiere Pro 25.6 LTS
Adobe Experience Manager (AEM) AEM Cloud Service (CS) Release 2026.02
Adobe Experience Manager (AEM) 6.5 LTS Service Pack 2
Adobe Experience Manager (AEM) 6.5 Service Pack 24
Adobe Substance 3D Stager 3.1.8
Adobe DNG Software Development Kit (SDK) DNG SDK 1.7.1 build 2502
:: Riferimenti
Adobe Security Bulletins e Advisories
https://helpx.adobe.com/security/security-bulletin.html
https://helpx.adobe.com/security/products/magento/apsb26-05.html
https://helpx.adobe.com/security/products/illustrator/apsb26-18.html
https://helpx.adobe.com/security/products/substance3d_painter/apsb26-25.html
https://helpx.adobe.com/security/products/acrobat/apsb26-26.html
https://helpx.adobe.com/security/products/premiere_pro/apsb26-28.html
https://helpx.adobe.com/security/products/experience-manager/apsb26-24.html
https://helpx.adobe.com/security/products/substance3d_stager/apsb26-29.html
https://helpx.adobe.com/security/products/dng-sdk/apsb26-30.html
Mitre CVE
https://www.cvedetails.com/vulnerability-list.php?vendor_id=53&year=2026&month=03
GARR CERT Security Alert - subscribe/unsubscribe:
http://www.cert.garr.it/alert/ricevi-gli-alert-di-cert
-----BEGIN PGP SIGNATURE-----
iGsEAREIACsWIQTGpdiR5MqstacBGHbBnEyTZRJgQgUCabEySw0cY2VydEBnYXJy
Lml0AAoJEMGcTJNlEmBCpvUAn0Er294kfsQUr8YPxENbdt9ozNhSAKDDrjjeJGru
iwMw3jC61e56KIRNdw==
=KtQQ
-----END PGP SIGNATURE-----