VYPR

Acs Aem Commons

by Adobe Inc.

CVEs (1)

  • CVE-2022-28820MedApr 21, 2022
    risk 0.40cvss 6.1epss 0.01

    ACS Commons version 5.1.x (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in /apps/acs-commons/content/page-compare.html endpoint via the a and b GET parameters. User input submitted via these parameters is not validated or sanitised. An attacker…