5.4

CVSS3.1

CVE-2025-64840 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 6:08 p.m.

5.4

CVSS3.1

CVE-2025-64564 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by a low privileged attacker to execute malicious scripts in the context of the victim's browser. Exploitation of this issue requires user interaction, s…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 7:55 p.m.

5.4

CVSS3.1

CVE-2025-64551 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by a low privileged attacker to execute malicious scripts in the context of the victim's browser. Exploitation of this issue requires user interaction, s…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 7:57 p.m.

5.4

CVSS3.1

CVE-2025-64569 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by a low privileged attacker to execute malicious scripts in the context of the victim's browser. Exploitation of this issue requires user interaction, s…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 7:55 p.m.

5.4

CVSS3.1

CVE-2025-64850 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 6:08 p.m.

5.4

CVSS3.1

CVE-2025-64592 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 6:04 p.m.

5.4

CVSS3.1

CVE-2025-64543 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by a low privileged attacker to execute malicious scripts in the context of the victim's browser. Exploitation of this issue requires user interaction, s…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 7:58 p.m.

5.4

CVSS3.1

CVE-2025-64578 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 6:15 p.m.

5.4

CVSS3.1

CVE-2025-64839 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: Dec. 12, 2025, 6:09 p.m.

5.1

CVSS4.0

CVE-2025-34430 - 1Panel CSRF Panel Name Modification

1Panel versions 1.10.33 through 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the panel name management functionality. The affected endpoint does not implement CSRF defenses such as anti-CSRF tokens or Origin/Referer validation. An attacker can craft a malicious webpage that s…

📅 Published: Dec. 10, 2025, 6:23 p.m. 🔄 Last Modified: March 5, 2026, 12:04 p.m.
Total resulsts: 343232
Page 2091 of 34,324
« previous page » next page
Filters