Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Nov 5, 2025

CVE-2025-54253

High
EPSS 28.7%CISA KEV
Adobe/Experience Manager (AEM) Forms

Description

Adobe Experience Manager Forms in JEE contains an unspecified vulnerability that allows for arbitrary code execution.

EPSS — Exploit Probability

28.7%

Higher than 96.5% of all CVEs

Required Action

https://helpx.adobe.com/security/products/aem-forms/apsb25-82.html ; https://nvd.nist.gov/vuln/detail/CVE-2025-54253

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
28.7%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Oct 15, 2025

Added to KEV

Oct 15, 2025

Remediation Due

Nov 5, 2025

Affected Product

Adobe

Experience Manager (AEM) Forms

View all Adobe CVEs