A vulnerability labeled as critical has been found in Sitecore Experience Manager and Experience Platform up to 9.3/10.4. This affects an unknown part. Such manipulation leads to use of externally-controlled input to select classes or code.

This vulnerability is documented as CVE-2025-53693. The attack can be executed remotely. There is not any exploit available.