CVE-2025-53693 is an unauthenticated HTML cache poisoning vulnerability in Sitecore Experience Manager (XM) and Sitecore Experience Platform (XP). The issue is described as an unsafe reflection flaw in Sitecore’s pre-auth XAML handler path (/-/xaml/), where attacker-controlled request values such as __SOURCE and __PARAMETERS are processed by AjaxScriptManager and used to dispatch methods reflectively. Although Sitecore applies a reflection filter that only permits methods whose full name contains "Sitecore.", researchers reported that this restriction can still be abused through XmlControl-derived controls, including paths involving Sitecore.Controls.HtmlPage / xmlcontrol:GlobalHeader, to reach Sitecore.Web.UI.WebControl methods. In particular, the method Sitecore.Web.UI.WebControl.AddToCache(string cacheKey, string html) can be invoked to overwrite entries in Sitecore’s HTML cache with attacker-supplied content. The vulnerability affects Sitecore Experience Manager (XM) versions 9.0 through 9.3 and 10.0 through 10.4, and Sitecore Experience Platform (XP) versions 9.0 through 9.3 and 10.0 through 10.4.
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
Patch, then assume compromise.
1 valid exploit after Mallory filtered fakes, detection scripts, and README-only repos.
This repository contains a Python exploit (exploit.py) for CVE-2025-53693, a cache poisoning vulnerability in Sitecore Experience Platform. The exploit targets unauthenticated XAML handler endpoints (e.g., /-/xaml/...) that expose controls allowing reflective method execution. By abusing the AjaxScriptManager's AddToCache method, the script injects arbitrary HTML/JavaScript payloads into the Sitecore cache. These payloads can be rendered in the application, enabling stored XSS, content injection, or further attacks such as data exfiltration or redirection. The exploit supports multiple payload types (XSS, iframe, redirect, data exfiltration, persistent banners) and verifies successful cache poisoning by querying several Sitecore cache endpoints. The repository consists of three files: a license, a README describing the vulnerability and mitigation, and the main exploit script. The exploit is operational and can be used to demonstrate or leverage the vulnerability on unpatched Sitecore XP instances.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
11 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
A Sitecore Experience Platform vulnerability enabling HTML cache poisoning via unsafe reflections.
A recent Sitecore vulnerability mentioned only as part of a possible exploit chain with CVE-2025-53690; no further technical detail is provided in the content.
An additional 2025 Sitecore vulnerability mentioned in a list of recent critical issues, without further detail in the content.
A pre-auth HTML cache poisoning vulnerability in Sitecore Experience Platform that abuses a restricted reflection/AJAX event mechanism to invoke Sitecore.Web.UI.WebControl.AddToCache(string, string), allowing attackers to overwrite cached HTML for chosen cache keys and inject arbitrary HTML/JS into rendered pages.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.