Stored XSS Vulnerability in Adobe Connect
CVE-2026-75697
9.3CRITICAL
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-75697?
Adobe Connect is vulnerable to a stored Cross-Site Scripting (XSS) issue, enabling attackers to inject malicious scripts into specific form fields. Exploiting this vulnerability allows attackers to execute harmful JavaScript in a victim's browser when the affected page is accessed, potentially leading to unauthorized access or control of the user's account or session.
Affected Version(s)
Adobe Connect 0 <= 12.11
Adobe Connect Android Mobile App 0 <= 4.4
Adobe Connect 12.11.1, 12.12