Stored Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2026-27234
5.4MEDIUM
What is CVE-2026-27234?
Adobe Experience Manager versions 6.5.23 and earlier contain a vulnerability that allows for stored Cross-Site Scripting (XSS). This flaw enables an attacker to inject malicious JavaScript code into vulnerable form fields. When unsuspecting users interact with these compromised fields, the malicious scripts may execute in their browsers, potentially compromising user data and security.
Affected Version(s)
Adobe Experience Manager 0 <= 6.5.23