Loading HuntDB...

GHSA-7qrf-4hm2-prgq

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, the attacker can inject malicious scripts that run when the page is rendered. This type of attack requires user interaction, as the victim would need to access a manipulated URL or page with the malicious script.

Related CVEs

Key Information

GHSA ID
GHSA-7qrf-4hm2-prgq
Published
December 11, 2024 12:31 AM
Last Modified
December 11, 2024 12:31 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.