Stored Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2026-27239
5.4MEDIUM
What is CVE-2026-27239?
Adobe Experience Manager versions 6.5.23 and earlier contain a stored Cross-Site Scripting (XSS) vulnerability that can be exploited by attackers to inject malicious JavaScript into form fields. This could lead to the execution of malicious scripts in the browsers of users navigating to affected pages, posing a serious threat to user security and integrity.
Affected Version(s)
Adobe Experience Manager 0 <= 6.5.23