CVE-2021-28550

Exploited in the Wild ✓ Confirmed 0-Day ★ Google Project Zero
Triaged: March 3, 2026 4 articles

EPSS Score

Source: FIRST.org · 2026-05-24
30.72%
probability
This CVE has a 30.72% probability of being exploited in the next 30 days.
0% Top 96.8th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Description

Project Zero
Use-after-free

Attack Intelligence

Google Project Zero

Patched
May 11, 2021
Reported by
???
Root Cause Analysis
???

Signal Intelligence

Confidence
92%
EPSS 30.72%
Mentions 4
Last Seen Nov 09, 2021

CNA Information

Analyst Note

CVE-2021-28550 is confirmed as a critical use-after-free vulnerability in Adobe Acrobat Reader with CVSS 9.6, affecting multiple widely-deployed versions and requiring only user interaction for exploitation. The classification is strongly supported by official Adobe advisories, coverage in CERT-EU security guidance, and inclusion in Google Project Zero tracking, demonstrating widespread awareness and validation within the security community.

Triage Info

Decided atMar 03, 2026