CVE-2026-81999

Adobe Experience Manager Forms JEE is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. An attacker with high privileges could exploit this vulnerability to gain elevated access to internal resources. Exploitation of this issue does not require user interaction. Scope is changed.

  • Published Sep 22, 2026
  • CVSS 8.7 high
  • 0.8% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2026-81999 at the National Vulnerability Database