Cisco Talos Disclosed Multiple Software Vulnerabilities

Patches have been released for vulnerabilities spanning Adobe, Apple, Foxit, and Microsoft software ecosystems.

Updated on Oct. 7, 2026 in Cybersecurity

Isometric editorial illustration of a heavy steel padlock clamped onto a simplified geometric computer memory module, representing software security patches.
Cisco Talos has disclosed multiple critical software vulnerabilities across major platforms including Adobe, Apple, and Microsoft, prompting urgent security patch releases. AI Illustration. Upload story photo >

Live Poll

Do you feel confident that your personal software applications are adequately protected against newly discovered security vulnerabilities?

Cisco Talos has disclosed a series of security vulnerabilities affecting widely used software including Adobe Photoshop, Apple macOS, Foxit Reader, and multiple Microsoft Windows drivers. All listed vendors have issued patches to address the identified security flaws.

Why it matters

These disclosures address flaws that could allow attackers to execute arbitrary code or escalate privileges, necessitating immediate updates for affected systems. The coordinated disclosure ensures that end-users can mitigate these risks by applying the latest vendor patches.

Identified flaws include a privilege escalation issue in Adobe Photoshop 2.11.0.30 (TALOS-2026-2360/CVE-2026-48388) and a use-after-free vulnerability in Foxit Reader 2026.1.1.36485. Other affected versions include macOS 26.3.1(25D2128) and Windows drivers at version 10.0.26100.8457.

The players

Cisco Talos

A threat intelligence organization that provides security research and maintains the Snort open-source intrusion prevention system.

Adobe

A multinational software company specializing in creative and multimedia tools such as the Photoshop image editing suite.

Apple

A global technology company known for its hardware and software platforms, including the macOS operating system.

Foxit

A software provider focused on PDF solutions, including the widely deployed Foxit Reader application.

Microsoft

A global technology corporation responsible for the Windows operating system and its core networking and file-system drivers.

The details

The vulnerabilities range from memory management errors to privilege escalation. In Adobe Photoshop, attackers can replace files with a malformed file to gain higher system permissions. In the Windows environment, issues like out-of-bounds pointer offsets and type confusion in the Cloud Files Mini Filter Driver were addressed, where attackers typically trigger vulnerabilities through sequences of API calls or crafted network packets.

Timeline

  1. October 7, 2026: Cisco Talos disclosed the software vulnerabilities.

The Tech Race

This disclosure continues the industry-standard practice of professional security research teams identifying and publicizing bugs to compel rapid remediation. It follows the ongoing cycle of vulnerability research where entities like Cisco Talos work to outpace malicious actors in software hardening.

Users of Adobe Photoshop, Apple macOS, Foxit Reader, and Windows should verify their software version against the latest vendor updates to ensure these patches are applied. The most immediate path to securing these systems is through standard system and application update utilities.

The takeaway

These disclosures reinforce the necessity of automated patch management to address critical vulnerabilities in core software. Users should monitor vendor security portals for the latest patches associated with the versions identified in this research.

Further reading

For broader trends in enterprise security, visit the Cybersecurity section.

More information

For technical details and security updates, visit the Snort rule sets download.

Source note: This article includes information reported by Talosintelligence.

Live Poll

Do you feel confident that your personal software applications are adequately protected against newly discovered security vulnerabilities?