Cross-Site Scripting Vulnerability in Adobe Experience Manager
CVE-2026-48253
5.4MEDIUM
Key Information:
- Vendor
Adobe
- Status
- Vendor
- CVE Published:
- 14 July 2026
What is CVE-2026-48253?
Adobe Experience Manager has a vulnerability that allows for DOM-based Cross-Site Scripting (XSS) attacks. An attacker can exploit this flaw to run malicious JavaScript in a user's browser by manipulating the DOM environment. The successful execution of this attack necessitates that the user visits a specially crafted webpage, putting their sensitive data at risk.
Affected Version(s)
Adobe Experience Manager 6.5 0 <= 6.5.25
Adobe Experience Manager 6.5 0 <= 6.5.25
Adobe Experience Manager 6.5 LTS 0