CVE-2025-49533
CRITICAL 9.8EPSS 52.2%
Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbitrary code execution by an attacker. Exploitation of this issue does not require user interaction. Scope is unchanged.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 52.25% chance of exploitation in the next 30 days, 99th percentile
- Nuclei
- critical
- Published
- 2025-07-08
- Updated
- 2026-02-26