Adobe Patches Reader Zero-Day Exploited for Months
2026-04-12T13:24:12Z•b7f92834cd8c6c82b0bc4efb4b2a7d76587ed24001d00b65efe070f9529b74a1
CVE-2026-34621adobeandroidarbitrary-code-executionchromechrome-147critical-vulnerabilitycrypto-walletdicomengagelabexploiticsjuniperjunosmarimoorthancpatchesplcrcereaderscadazero-day
What happened
A SecurityWeek roundup (Apr 10–12, 2026) highlights an actively exploited Adobe Reader zero-day (CVE-2026-34621) that enables arbitrary code execution and has been used in the wild for months. Other notable items include Juniper’s patching of dozens of Junos OS flaws (including a critical unauthenticated remote takeover), Orthanc DICOM bugs leading to crashes and RCE, Chrome 147 fixing multiple vulnerabilities (two critical in WebML), a Marimo flaw rapidly weaponized after disclosure, reports of Iran-linked manipulation of PLC/SCADA systems, and a Microsoft-discovered EngageLab SDK issue that/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- b7f92834cd8c6c82b0bc4efb4b2a7d76587ed24001d00b65efe070f9529b74a1
- Enrichment time
- 2026-04-12T13:24:12Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.