SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-19471

MEDIUM · CVSS 6.9 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

ArmorStart® LT is vulnerable to multiple stored cross-site scripting (XSS) issues due to inadequate sanitization of user input, allowing attackers to inject malicious scripts that execute when other users access the affected pages. This vulnerability could lead to unauthorized actions on behalf of users, data theft, or session hijacking. Organizations utilizing ArmorStart® LT should prioritize remediation to protect their users and data integrity.

CVE
CVE-2026-19471
Severity
MEDIUM
CVSS
6.9
EPSS
0.26%

Original NVD Description

Multiple stored cross-site scripting security issues exist within ArmorStart® LT. Stored XSS occurs when user input is not properly sanitized and is stored on the server, allowing an attacker to inject malicious scripts that will be executed when other users access the affected page.