📦

experience_platform

Vendor: sitecore

Actively Exploited 3 CISA KEV List
PoC / Exploits 10 Code Available
Total RCEs 11 Remote Access
Total CVEs 45 Total Indexed
Avg. EPSS 21.35% Exploit Prob.
Latest CVE CVE-2025-53690 Sep 03

Security Vulnerability Index

Page 3 / 5
6.1 CVSS
CVE-2016-8855
Exploit Found

Cross-Site Scripting (XSS) in "/sitecore/client/Applications/List Manager/Taskpages/Contact list" in Sitecore Experience Platform 8.1 rev. 160519 (8.1 Update-3) allows remote attacks via the Name or Description parameter. This is fixed in 8.2 Update-2.

EPSS: 2.19%