Vulnerability index

Browse CVEs

1,175 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
Acs Aem Commons MEDIUM 6.1
CVE-2022-28820

ACS Commons version 5.1.x (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in /apps/acs-commons/content/page-compare.h…

Fix: 5.2.0+
Fix from $1,600 2022-04-21
Experience Manager MEDIUM 6.1
CVE-2021-43765

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Experience Manager MEDIUM 6.1
CVE-2021-44176

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Experience Manager MEDIUM 6.1
CVE-2021-44177

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Experience Manager MEDIUM 6.1
CVE-2021-44178

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a reflected Cross-Site Scripting (XSS) vulnerability via the it…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Experience Manager MEDIUM 5.4
CVE-2021-43764

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Experience Manager MEDIUM 5.4
CVE-2021-43761

AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are affected by a stored Cross-Sit…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Connect MEDIUM 6.1
CVE-2021-40721

Adobe Connect version 11.2.3 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a …

Fix: after 11.2.3
Fix from $1,600 2021-10-15
Experience Manager MEDIUM 6.1
CVE-2021-40714

Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the accesskey paramete…

Fix: after 6.5.9.0
Fix from $1,600 2021-09-27
Experience Manager MEDIUM 5.4
CVE-2021-40711

Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a stored XSS vulnerability when creating Content Fragments. An authenticated at…

Fix: after 6.5.9.0
Fix from $1,600 2021-09-27
Connect MEDIUM 6.1
CVE-2021-36062

Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to injec…

Fix: after 11.2.2
Fix from $1,600 2021-09-01
Connect MEDIUM 6.1
CVE-2021-36063

Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to injec…

Fix: after 11.2.2
Fix from $1,600 2021-09-01
Adobe Commerce MEDIUM 6.1
CVE-2021-36026

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored cross-site scripting vulnerabi…

Fix: after 2.4.2
Fix from $1,600 2021-09-01
Adobe Commerce MEDIUM 6.1
CVE-2021-36027

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored cross-site scripting vulnerabi…

Fix: after 2.4.2
Fix from $1,600 2021-09-01
Experience Manager MEDIUM 6.1
CVE-2021-28628

Adobe Experience Manager Cloud Service offering, as well as versions 6.5.8.0 (and below) is affected by a Cross-Site Scripting (XSS) vulnerability th…

Fix: after 6.5.8.0
Fix from $1,600 2021-08-24
Experience Manager MEDIUM 6.1
CVE-2021-28625

Adobe Experience Manager Cloud Service offering, as well as versions 6.5.8.0 (and below) is affected by a Cross-Site Scripting (XSS) vulnerability th…

Fix: after 6.5.8.0
Fix from $1,600 2021-08-24
Experience Manager MEDIUM 6.1
CVE-2021-21084

AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are affected by a stored Cross-Sit…

Fix: 6.4.8.4 / 6.5.8.0+
Fix from $1,600 2021-06-28
Coldfusion MEDIUM 5.4
CVE-2021-21087EPSS 37%

Adobe Coldfusion versions 2016 (update 16 and earlier), 2018 (update 10 and earlier) and 2021.0.0.323925 are affected by an Improper Neutralization o…

Patch available
Fix from $1,600 2021-04-15
Connect MEDIUM 6.1
CVE-2021-21079

Adobe Connect version 11.0.7 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulner…

Fix: after 11.0.7
Fix from $1,600 2021-03-12
Connect MEDIUM 6.1
CVE-2021-21080

Adobe Connect version 11.0.7 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulner…

Fix: after 11.0.7
Fix from $1,600 2021-03-12
Adobe Consulting Services Commons MEDIUM 6.1
CVE-2021-21043

ACS Commons version 4.9.2 (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in version-compare and page-compare due to …

Fix: after 4.9.2
Fix from $1,600 2021-02-02
Experience Manager CRITICAL 9.0
CVE-2020-24445

AEM's Cloud Service offering, as well as version 6.5.6.0 (and below), are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be…

Fix: after 6.5.6.0
Fix from $2,300 2020-12-10
Connect MEDIUM 6.1
CVE-2020-24442

Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a vi…

Fix: after 11.0
Fix from $1,600 2020-11-12
Connect MEDIUM 6.1
CVE-2020-24443

Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a vi…

Fix: after 11.0
Fix from $1,600 2020-11-12
Marketo Sales Insight MEDIUM 6.1
CVE-2020-24416

Marketo Sales Insight plugin version 1.4355 (and earlier) is affected by a blind stored Cross-Site Scripting (XSS) vulnerability that could be abused…

Fix: after 1.4355
Fix from $1,600 2020-10-20
Experience Manager MEDIUM 6.1
CVE-2020-9743

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by an HTML injection vulnerabil…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Experience Manager MEDIUM 5.4
CVE-2020-9740

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability t…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Experience Manager MEDIUM 5.4
CVE-2020-9741

The AEM forms add-on for versions 6.5.5.0 (and below) and 6.4.8.2 (and below) is affected by a stored XSS vulnerability that allows users with 'Autho…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Experience Manager MEDIUM 5.4
CVE-2020-9742

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below) and 6.3.3.8 (and below) are affected by a stored XSS vulnerability that allows users with 'Auth…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Experience Manager MEDIUM 5.4
CVE-2020-9734

The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.1 (and below) is affected by a stored XSS vulnerability that allows users with 'Autho…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10