CyberRota Analysis
AI-GeneratedJet Admin is vulnerable to a cross-site scripting (XSS) attack that allows authenticated attackers to inject malicious JavaScript through the sign-in page's scripts and styles option. This vulnerability can lead to the execution of injected scripts in the context of any user's domain, potentially compromising user data and session integrity. Organizations using Jet Admin should prioritize remediation to protect against potential exploitation and ensure user safety.
CVE
CVE-2026-75933
Severity
HIGH
CVSS
7.3
EPSS
0.30%
Java
Original NVD Description
Jet Admin allows an authenticated attacker to inject JavaScript via the sign-in page's scripts and styles option. Injected script is executed in the context of any visiting user's domain.