VDB
CVE-2026-48253
CVE-2026-48253
PUBLISHED
CVSS 5.400000095367432 MEDIUM
Adobe has released updates for Adobe Experience Manager (AEM). This update resolves vulnerabilities rated important. Successful exploitation of these vulnerabilities could result in arbitrary code execution, security feature bypass, arbitrary file system read, and privilege escalation. Adobe is not aware of any exploits in the wild for any of the issues addressed in these updates. Vulnerability: Cross-site Scripting (DOM-based XSS) (CWE-79) Impact: Arbitrary code execution Severity: Important CVSS: 5.4 CWE: CWE-79
EPSS 0.17% · 6.4th percentile
Risk Scores
CVSS 3.1
5.400000095367432
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.17%
6.4th percentile
Timeline
- Jul 14, 2026 CVE Published
- Jul 15, 2026 Coalition ESS Score
- Jul 17, 2026 CVE Updated
- Aug 7, 2026 EPSS Score