SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-48951

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-07 · Last synced 2026-08-06

CyberRota Analysis

AI-Generated

The vulnerability arises from inadequate escaping in modalreturn layouts across various components, allowing for cross-site scripting (XSS) attacks. This could enable attackers to execute arbitrary scripts in the context of affected users, potentially leading to data theft or session hijacking. Organizations utilizing these components should prioritize remediation to safeguard against potential exploitation.

CVE
CVE-2026-48951
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Lack of escaping leads to XSS vulnerabilities in modalreturn layouts of various components.

Related CVEs

Other vulnerabilities affecting the same vendor(s)