Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6604 | Adobe Experience Manager Core Components version 2.20.6 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser. Exploitation of this issue requires a low author privilege access. |
Github GHSA |
GHSA-qcgc-6q86-7x2p | AEM WCM Core Components CVG Image vulnerable to Reflected Cross-site Scripting |
Wed, 23 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2025-04-23T17:53:10.927Z
Reserved: 2022-07-12T00:00:00.000Z
Link: CVE-2022-35697
Updated: 2024-08-03T09:44:20.562Z
Status : Modified
Published: 2022-08-10T20:15:57.953
Modified: 2024-11-21T07:11:29.943
Link: CVE-2022-35697
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA