Adobe Flash Player 27.0.0.170 addresses a critical type confusion vulnerability that could lead to code execution (CVE-2017-11292).
Adobe is aware of a report that an exploit for CVE-2017-11292 exists in the wild, and is being used in limited, targeted attacks against users running Windows.