Vulnerability index

Browse CVEs

661 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Campaign CRITICAL 10.0
CVE-2026-48286

Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbi…

Fix: after 7.4.3
Fix from $2,300 2026-06-30
Campaign CRITICAL 10.0
CVE-2026-48303

Adobe Campaign Classic (ACC) versions 7.4.3 build 9394 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbi…

Fix: 7.4.3+
Fix from $2,300 2026-06-09
Campaign CRITICAL 10.0
CVE-2026-47938

Adobe Campaign Classic (ACC) versions 7.4.3 build 9394 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could resu…

Fix: after 7.4.2
Fix from $2,300 2026-06-09
Coldfusion CRITICAL 9.6
CVE-2026-47928

ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut…

Mitigation only
Fix from $2,300 2026-06-09
Experience Manager CRITICAL 9.3
CVE-2026-34691

Adobe Experience Manager Forms JEE versions LTS SP1, 6.5.24.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that coul…

Fix: after 6.5.24.0
Fix from $2,300 2026-06-09
Connect Desktop Application CRITICAL 9.6
CVE-2026-34659

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbit…

Fix: after 2025.8.157
Fix from $2,300 2026-05-12
Connect Desktop Application CRITICAL 9.3
CVE-2026-34660

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code…

Fix: after 2025.9.15
Fix from $2,300 2026-05-12
Coldfusion CRITICAL 9.3
CVE-2026-27304

ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut…

Mitigation only
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-34615

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary cod…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.6
CVE-2026-27303

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary cod…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27246

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27243

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Connect CRITICAL 9.3
CVE-2026-27245

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this…

Fix: 12.11 / 2025.9.15+
Fix from $2,300 2026-04-14
Experience Manager CRITICAL 9.3
CVE-2025-64538

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could lead to arbitrar…

Fix: 6.5.24.0 / 2025.12.0+
Fix from $2,300 2025-12-10
Experience Manager CRITICAL 9.3
CVE-2025-64539

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could lead to arbitrar…

Fix: 6.5.24.0 / 2025.12.0+
Fix from $2,300 2025-12-10
Experience Manager CRITICAL 9.3
CVE-2025-64537

Adobe Experience Manager versions 6.5.23 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could lead to arbitrar…

Fix: 6.5.24.0 / 2025.12.0+
Fix from $2,300 2025-12-10
Coldfusion CRITICAL 9.1
CVE-2025-61808EPSS 10%

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could …

Mitigation only
Fix from $2,300 2025-12-10
Coldfusion CRITICAL 9.1
CVE-2025-61809

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input Validation vulnerability that could result in a Security f…

Mitigation only
Fix from $2,300 2025-12-10
Coldfusion CRITICAL 9.1
CVE-2025-61811

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code…

Mitigation only
Fix from $2,300 2025-12-10
Connect CRITICAL 9.3
CVE-2025-49553

Adobe Connect versions 12.9 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker t…

Fix: 12.10+
Fix from $2,300 2025-10-14
Coldfusion CRITICAL 10.0
CVE-2025-54261EPSS 21%

ColdFusion versions 2025.3, 2023.15, 2021.21 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traver…

Mitigation only
Fix from $2,300 2025-09-09
Commerce CRITICAL 9.1
CVE-2025-54236 KEVEPSS 95%

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Improper Input Validation vu…

Mitigation only
Fix from $2,300 2025-09-09
Experience Manager Forms CRITICAL 10.0
CVE-2025-54253 KEVEPSS 88%

Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result in arbitrary code execution. …

Fix: after 6.5.23.0
Fix from $2,300 2025-08-05
Experience Manager CRITICAL 9.8
CVE-2025-49533EPSS 52%

Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbi…

Fix: after 6.5.23.0
Fix from $2,300 2025-07-08
Connect Desktop Application CRITICAL 9.6
CVE-2025-27203

Adobe Connect versions 24.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbitrary code execution…

Fix: 2025.5.5+
Fix from $2,300 2025-07-08
Coldfusion CRITICAL 9.3
CVE-2025-49535

ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerabili…

Mitigation only
Fix from $2,300 2025-07-08
Connect CRITICAL 9.3
CVE-2025-43567

Adobe Connect versions 12.8 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to i…

Fix: 12.9+
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-43564EPSS 15%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file…

Mitigation only
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-43559

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary co…

Mitigation only
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-43560EPSS 19%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary co…

Mitigation only
Fix from $2,300 2025-05-13