CVE-2025-54196: Adobe Connect

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Adobe Connect versions 12.9 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue requires user interaction in that a victim must click on a crafted link.

Affected products

  • Adobe Connect: before 12.10 (fixed in 12.10)

Published 2025-10-14. Last modified 2026-10-08.