Cyber Resilience
← All news

Patch bundle: Adobe patch day 2026-09-22 — 40 CVEs across 8 bulletins

Our takeAdobe's 2026-09-22 security bulletins: 40 CVEs fixed across 8 product bulletin(s).
Sources (1)
What this means for you — Security leader:Fold the Adobe bundle into the normal patch cycle; nothing in it is flagged as exploited, so cadence beats heroics.
What this means for you — Lean IT orgs:Run your Adobe updates on schedule — this bundle carries no known-exploited fixes, so the regular maintenance window is fine.
What this means for you — MSP:Standard-cadence rollout of the Adobe bundle across client fleets; no exploited entries means no emergency change windows.
What this means for you — Researcher:Facts-only bundle summary; totals and severity mix from the vendor's own advisory data. No exploited-in-the-wild entries at publication.