Known Vulnerabilities for Flash Player by Adobe

Listed below are 10 of the newest known vulnerabilities associated with "Flash Player" by "Adobe".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-9746 Adobe Flash Player version 32.0.0.433 (and earlier) are affected by an exploitable NULL pointer dereference vulnerability tha... 8.8 - HIGH 2020-10-14 2021-09-08
CVE-2020-9633 Adobe Flash Player Desktop Runtime 32.0.0.371 and earlier, Adobe Flash Player for Google Chrome 32.0.0.371 and earlier, and A... 9.8 - CRITICAL 2020-06-12 2021-09-16
CVE-2020-3757 Adobe Flash Player versions 32.0.0.321 and earlier, 32.0.0.314 and earlier, 32.0.0.321 and earlier, and 32.0.0.255 and earlie... 8.8 - HIGH 2020-02-13 2021-09-16
CVE-2019-8070 Adobe Flash Player 32.0.0.238 and earlier versions, 32.0.0.207 and earlier versions have a Use after free vulnerability. Succ... 9.8 - CRITICAL 2019-09-12 2021-11-22
CVE-2019-8069 Adobe Flash Player 32.0.0.238 and earlier versions, 32.0.0.207 and earlier versions have a Same Origin Method Execution vulne... 9.8 - CRITICAL 2019-09-12 2021-11-22
CVE-2019-7845 Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after free... 8.8 - HIGH 2019-06-12 2022-04-18
CVE-2019-7837 Adobe Flash Player versions 32.0.0.171 and earlier, 32.0.0.171 and earlier, and 32.0.0.171 and earlier have a use after free ... 8.8 - HIGH 2019-05-22 2019-05-23
CVE-2019-7108 Adobe Flash Player versions 32.0.0.156 and earlier, 32.0.0.156 and earlier, and 32.0.0.156 and earlier have an out-of-bounds ... 7.5 - HIGH 2019-05-23 2022-10-12
CVE-2019-7096 Adobe Flash Player versions 32.0.0.156 and earlier, 32.0.0.156 and earlier, and 32.0.0.156 and earlier have an use after free... 9.8 - CRITICAL 2019-05-23 2022-10-12
CVE-2019-7090 Flash Player Desktop Runtime versions 32.0.0.114 and earlier, Flash Player for Google Chrome versions 32.0.0.114 and earlier,... 6.5 - MEDIUM 2019-05-24 2021-09-08

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationAdobeFlash Player9.125.0AllAllAll
ApplicationAdobeFlash Player9.0.9.0AllAllAll
ApplicationAdobeFlash Player9.0.8.0AllAllAll
ApplicationAdobeFlash Player9.0.48.0AllAllAll
ApplicationAdobeFlash Player9.0.47.0AllAllAll
ApplicationAdobeFlash Player9.0.45.0AllAllAll
ApplicationAdobeFlash Player9.0.31.0AllAllAll
ApplicationAdobeFlash Player9.0.31AllAllAll
ApplicationAdobeFlash Player9.0.289.0AllAllAll
ApplicationAdobeFlash Player9.0.283.0AllAllAll
ApplicationAdobeFlash Player9.0.280AllAllAll
ApplicationAdobeFlash Player9.0.28.0AllAllAll
ApplicationAdobeFlash Player9.0.28AllAllAll
ApplicationAdobeFlash Player9.0.277.0AllAllAll
ApplicationAdobeFlash Player9.0.262.0AllAllAll
ApplicationAdobeFlash Player9.0.260.0AllAllAll
ApplicationAdobeFlash Player9.0.246.0AllAllAll
ApplicationAdobeFlash Player9.0.20.0AllAllAll
ApplicationAdobeFlash Player9.0.20AllAllAll
ApplicationAdobeFlash Player9.0.18d60AllAllAll
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report