Post
securityrss.ai
securityrss.bsky.social
did:plc:geidqukzen75knciqkq77vgq
CISA has added a critical vulnerability, CVE-2025-54253 (CVSS 10.0), affecting Adobe Experience Manager (AEM) Forms on JEE versions 6.5.23.0 and earlier, to its KEV catalog due to active exploitation. The flaw allows arbitrary code execution via an exposed /adminui/debug servlet.
https://thehackernews.com/2025/10/cisa-flags-adobe-aem-flaw-with-perfect.html
2025-10-16T17:32:21.260Z