Adobe security advisory (AV26-953)
Canada's cyber centre warned of vulnerabilities in AEM, Connect, Bridge, and other Adobe products.
On September 23, 2026, the Canadian Centre for Cyber Security issued advisory AV26-953 on Adobe vulnerabilities disclosed as of September 22. Affected products include AEM 6.5 Forms JEE through 6.5.25, AEM 6.5 LTS Forms through SP2, Bridge, Connect and its Android app, C2PA tooling, InDesign, Premiere, and Substance 3D Modeler. The bulletin lists vulnerable version ceilings but does not name CVE identifiers or report active exploitation.
38