Security · 5h ago
Adobe Acrobat Extension Bug Exposed WhatsApp Web Data
A now-patched vulnerability in the Adobe Acrobat Chrome extension, affecting over 314 million users, could have let malicious sites silently access WhatsApp Web data. Tracked as CVE-2026-48294 with a CVSS score of 7.4, the flaw was dubbed HermeticReader by Guardio Labs. Adobe has released a fix for the issue.
Meridian48 take
The high user count makes this a significant supply-chain risk, though the actual exploitation window was likely limited.
Read the full reporting
Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data →
The Hacker News
adobe-acrobatwhatsapp-security