Adobe Acrobat: PDF edit, convert, sign toolsSecurity Analysis

Chromev26.2.2.0MV3March 13, 2026 at 01:17 AM
Potentially unsafe

This extension shows concerning patterns that may indicate risky behavior. Proceed with caution.

5.9MEDIUM
5.9 MEDIUMRaw: 9.1

This extension shows some risk signals that are common in legitimate extensions but worth reviewing. Check the details below.

Based on 49 permissions including high-risk ones, 397 code findings, 6 dangerous combinations.

Trust Signals(6.5/10)

Users
338.0M
Rating
2.8(61K reviews)
Developer
Adobe, Inc.
Status
Featured

Dangerous Combinations(6)

HIGHCookie access + external network

Extension has cookie access and sends data to external servers — potential session token theft.

cookies+external network request
MEDIUMTab tracking API + external communication

Extension uses tab tracking APIs (onUpdated/query) and communicates with external servers — potential browsing surveillance.

tabs+tabs API usage + external network
CRITICALNetwork interception + external communication

Extension intercepts network traffic and sends data externally — potential man-in-the-middle behavior.

webRequest/webRequestBlocking+external network request
HIGHHistory access + external communication

Extension reads browsing history and sends data externally — potential history exfiltration.

history+external network request
CRITICALNative messaging + dynamic code execution

Extension communicates with native apps and executes dynamic code — potential sandbox escape vector.

nativeMessaging+eval/Function/dynamic code
CRITICALAll-sites access + keyboard capture

Extension has access to all sites and captures keyboard input — behavior consistent with a keylogger.

<all_urls>+keylogger_pattern
Permissions
9.5/10
Code
8.3/10
Combinations
10.0/10
Manifest/CSP
9.2/10

Permissions(49 analyzed)

Code Findings(33 patterns, 397 total)

Libraries(2 detected)

2 libraries detected, 2 with known vulnerabilities

Content Security Policy

CSP Present(1 issue)
LOW
object-srcobject-src not restricted

object-src is not set to 'none'. Plugins like Flash can be embedded, which may allow code execution.

Manifest Analysis(13 findings)

Resolved from __MSG_* i18n placeholders:

Name: Adobe Acrobat: PDF edit, convert, sign tools

Description: Do more in Google Chrome with Adobe Acrobat PDF tools. View, fill, comment, sign, and try convert and compress tools.

HIGH
web_accessible_resourcesJS files exposed to web pages

JavaScript files are accessible to ALL websites. Any page can load and interact with these scripts, enabling web→extension attacks.

MEDIUM
web_accessible_resources.matchesOverly broad match patterns

Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

MEDIUM
web_accessible_resourcesJS files exposed to web pages

JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.

LOW
externally_connectableExternal messaging enabled

Extension accepts messages from 3 external pattern(s). Verify these are trusted origins.

MEDIUM
content_scriptsContent script injected on all URLs

Content script matches <all_urls>, executing on every website the user visits.

External Domains(72)

${drive_usercontent_url*127.0.0.1accounts.google.comacrobat.adobe.comacroipm2.adobe.comacroipm2.stage.adobe.comadobe.comauth-stg1.services.adobe.comauth.services.adobe.combugs.chromium.orgbugs.jquery.combugs.webkit.orgbugzilla.mozilla.orgccc-embed.adobe.comchromewebstore.google.comclassroom.google.comcloud.acrobat.comcloud.stage.acrobat.comcode.google.comconnect.microsoft.comconvert-pdf-webpagecreatepdf.acrobat.comcreatepdf.stage.acrobat.comdc-api-dev.adobe.iodc-api-stage.adobe.iodc-api.adobe.iodev.acrobat.adobe.comdocs.google.comdocumentcloud.adobe.comdrafts.csswg.orgdrive.google.comdrive.usercontent.google.comen.wikipedia.orgexample.comgithub.comhtml.spec.whatwg.orgims-na1-stg1.adobelogin.comims-na1.adobelogin.comjquery.comjquery.orgjsperf.comlocal-test.acrobat.adobe.commail.google.commicrosoftedge.microsoft.commobile.slate.commsdn.microsoft.comnew.express.adobe.comoutlook.live.comoutlook.office.comoutlook.office365.comp13n-stage.adobe.iop13n.adobe.iopromisesaplus.comreactjs.orgschema.orgsearchfox.orgsizzlejs.comsstats.adobe.comstage.acrobat.adobe.comstage.cc-embed.adobe.comstage.projectx.corp.adobe.comtest.acrobat.adobe.comweb.archive.orgwebtp.whatsapp.netwiki.corp.adobe.comwww.adobe.comwww.apache.orgwww.hello.comwww.services.adobe.comwww.stage.adobe.com

Indicators of Compromise

61 indicators of compromise found

File Statistics

560
Total Files
289
JS Files
12.3 MB
Total Size

Other Scanned Extensions