CVE-2025-34138 | Sitecore Experience Manager up to 10.4 improper authorization (KB1003743 / EUVD-2025-22719)
A vulnerability marked as critical has been reported in Sitecore Experience Manager, Experience Platform, Experience Commerce and Managed Cloud up to 10.4. Affected by this vulnerability is an unknown functionality. This manipulation causes improper authorization.
This vulnerability appears as CVE-2025-34138. The attack may be initiated remotely. There is no available exploit.