Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of this issue requires user interaction in that a victim must visit a crafted webpage. Scope is changed.
Metrics
Affected Vendors & Products
References
History
Fri, 11 Sep 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 11 Sep 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe experience Manager |
|
| CPEs | cpe:2.3:a:adobe:experience_manager:*:*:*:*:-:*:*:* cpe:2.3:a:adobe:experience_manager:*:*:*:*:aem_cloud_service:*:*:* cpe:2.3:a:adobe:experience_manager:*:-:*:*:lts:*:*:* cpe:2.3:a:adobe:experience_manager:6.5:-:*:*:lts:*:*:* cpe:2.3:a:adobe:experience_manager:6.5:sp1:*:*:lts:*:*:* cpe:2.3:a:adobe:experience_manager:6.5:sp2:*:*:lts:*:*:* |
|
| Vendors & Products |
Adobe
Adobe experience Manager |
Tue, 08 Sep 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of this issue requires user interaction in that a victim must visit a crafted webpage. Scope is changed. | |
| Title | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-09-08T19:56:12.776Z
Updated: 2026-09-11T21:11:54.158Z
Reserved: 2026-08-18T01:29:54.614Z
Link: CVE-2026-75651
Updated: 2026-09-11T21:11:49.046Z
Status : Analyzed
Published: 2026-09-08T20:18:14.073
Modified: 2026-09-11T21:17:15.073
Link: CVE-2026-75651
No data.