SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-75933

HIGH · CVSS 7.3 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-08-21 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Jet Admin is vulnerable to a cross-site scripting (XSS) attack that allows authenticated attackers to inject malicious JavaScript through the sign-in page's scripts and styles option. This vulnerability can lead to the execution of injected scripts in the context of any user's domain, potentially compromising user data and session integrity. Organizations using Jet Admin should prioritize remediation to protect against potential exploitation and ensure user safety.

CVE
CVE-2026-75933
Severity
HIGH
CVSS
7.3
EPSS
0.30%
Java

Original NVD Description

Jet Admin allows an authenticated attacker to inject JavaScript via the sign-in page's scripts and styles option. Injected script is executed in the context of any visiting user's domain.