CVE-2025-27218 | Sitecore Experience Manager/Experience Platform up to 10.4 deserialization (KB1003535 / EDB-52344)
A vulnerability categorized as critical has been discovered in Sitecore Experience Manager and Experience Platform up to 10.4. The affected element is an unknown function. The manipulation results in deserialization.
This vulnerability is identified as CVE-2025-27218. The attack can be executed remotely. Additionally, an exploit exists.
A patch should be applied to remediate this issue.