Skip to main content
notta
Participant
April 27, 2026
Question

Node.exe Vulnerability

  • April 27, 2026
  • 1 reply
  • 20 views

Hello, since January 2026 our vulnerability scanners have been reporting a vulnerability for node.exe. The scanner is showing the detected file as Tuesday, January 13, 2026 Security Releases:

Path: C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe

Installed version: 22.18.0.0

Fixed version: 22.22.0

All of our systems are showing this same vulnerability that use Adobe Creative Cloud.  Management has been asking why these vulnerabilities still exist. I have been fully updated multiple times since January and the vulnerability still exists.

Obviously this came with the Adobe installer so why isn’t this file being updated when the applications are being updated?

Thank you.

    1 reply

    kglad
    Community Expert
    Community Expert
    April 27, 2026

    you can replace with the updated node.exe

    notta
    nottaAuthor
    Participant
    April 27, 2026

    Thanks for the response. I kind of figured that was going to be the solution. Not the greatest solution. Replacing the file with the latest version without being tested by Adobe is not ideal and is frankly ridiculous that they don’t release it themselves. Now I have 20+ production systems where I’m going to be rolling the dice. Once again thanks for responding.