AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-28179

MEDIUM · CVSS 5.9 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-08-06 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

FiboSearch versions up to 1.33.0 are vulnerable to a Cross Site Scripting (XSS) flaw in the shop manager component, allowing attackers to inject malicious scripts that could execute in the context of a user's session. This vulnerability poses a medium risk, as it could lead to unauthorized actions or data exposure for users interacting with the affected systems. E-commerce platforms and web administrators utilizing FiboSearch should prioritize remediation to safeguard against potential exploitation.

CVE
CVE-2026-28179
Severity
MEDIUM
CVSS
5.9
EPSS
0.17%

Original NVD Description

Shop manager Cross Site Scripting (XSS) in FiboSearch <= 1.33.0 versions.