Reflected Cross-Site Scripting Vulnerability in Adobe Connect
CVE-2026-75698
9.3CRITICAL
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-75698?
Adobe Connect has a reflected Cross-Site Scripting vulnerability that allows attackers to inject malicious scripts into web pages. Successful exploitation requires the victim to visit a specially crafted URL or interact with a compromised webpage, potentially compromising user accounts or sessions. Proper mitigation steps should be followed as outlined in the vendor's security advisory.
Affected Version(s)
Adobe Connect 0 <= 12.11
Adobe Connect Android Mobile App 0 <= 4.4
Adobe Connect 12.11.1, 12.12