adobe

7,148 tracked vulnerabilities.

CVE-2025-64559 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64558 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64557 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64556 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64555 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64554 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64553 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64551 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64550 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64549 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64548 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64547 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64546 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64545 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64544 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64543 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64541 MEDIUM
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - Stored Cross-Site Scripting in Form Fields
Dec 10, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-64539 CRITICAL
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 9.3
EPSS 0.00
CVE-2025-64538 CRITICAL
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 9.3
EPSS 0.00
CVE-2025-64537 CRITICAL
Adobe Experience Manager < 6.5.24.0 and < 2025.12.0 - DOM-based Cross-Site Scripting
Dec 10, 2025
CVSS 9.3
EPSS 0.01
CVE-2025-64898 MEDIUM
Adobe ColdFusion <= 2025.4, <= 2023.16, <= 2021.22 - Insufficiently Protected Credentials
Dec 10, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-64897 MEDIUM
ColdFusion <= 2025.4, 2023.16, 2021.22 - Improper Access Control
Dec 10, 2025
CVSS 5.6
EPSS 0.00
CVE-2025-61823 MEDIUM
ColdFusion <= 2025.4, 2023.16, 2021.22 - Authenticated XML External Entity Injection
Dec 10, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-61822 MEDIUM
ColdFusion <= 2025.4, <= 2023.16, <= 2021.22 - Arbitrary File System Write via Improper Input Validation
Dec 10, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-61821 MEDIUM
Adobe ColdFusion <= 2025.4, <= 2023.16, <= 2021.22 - XML External Entity Injection
Dec 10, 2025
CVSS 6.8
EPSS 0.00