Adobe released its January 2020 Patch Tuesday updates that address several flaws in Illustrator and Experience Manager products. The vulnerabilities have been assigned a severity rating of critical, but their priority rating is 3, which means Adobe does not expect any of them to be exploited in attacks. The flaws rated important are Reflected Cross-Site Scripting cross-site scripting (XSS) or Expression Language injection. The security hole rated moderate has been described as a user interface injection issue and it can also lead to the disclosure of sensitive information.”]
Source: https://securityaffairs.co/wordpress/96407/security/adobe-patch-tuesday-jan-20.html

