DOM-Based Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2025-47053
5.4MEDIUM
What is CVE-2025-47053?
A DOM-based Cross-Site Scripting (XSS) vulnerability exists in Adobe Experience Manager versions 6.5.22 and earlier. This flaw allows low privileged attackers to manipulate the Document Object Model (DOM) environment, enabling them to execute malicious JavaScript in the context of a victim's browser. For successful exploitation, the targeted user must visit a specially crafted web page designed to trigger this vulnerability.
Affected Version(s)
Adobe Experience Manager 0 <= 6.5.22