Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.1
Adobe Connect: Malicious Scripts Can Run in Your Browser
CVE-2026-21331
Summary
Adobe Connect versions 2025.3 and earlier have a security flaw that could let hackers trick users into running malicious code in their browser. If you use Adobe Connect, update to the latest version to fix this issue. This will help prevent hackers from taking control of your browser and stealing sensitive information.
Original title
Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulne...
Original description
Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser. Scope is changed.
nvd CVSS3.1
6.1
Vulnerability type
CWE-79
Cross-site Scripting (XSS)
Published: 14 Apr 2026 · Updated: 15 Apr 2026 · First seen: 14 Apr 2026