OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-12559

HIGH · CVSS 7.3 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-09-24 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

A Stored Cross-Site Scripting (XSS) vulnerability exists in the OpenText Vendor Invoice Management for SAP Solutions Capture Validation application, allowing attackers to execute unauthorized scripts in users' browsers. This could compromise the confidentiality and integrity of sensitive information processed within the application. Organizations utilizing this software should prioritize remediation to mitigate potential security risks.

CVE
CVE-2026-12559
Severity
HIGH
CVSS
7.3
EPSS
0.39%

Original NVD Description

A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText Vendor Invoice Management for SAP Solutions Capture Validation application. Under certain conditions, this issue could allow execution of unauthorized script content in a user's browser, potentially impacting confidentiality and integrity of information processed through the application.