Loading HuntDB...

GHSA-3w4c-hqgp-9fj3

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. User interaction is required for exploitation, as a victim must visit a malicious link or input data into a vulnerable web application.

Related CVEs

Key Information

GHSA ID
GHSA-3w4c-hqgp-9fj3
Published
December 11, 2024 12:31 AM
Last Modified
December 11, 2024 12:31 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.