AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-48953

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-07 · Last synced 2026-08-06

CyberRota Analysis

AI-Generated

The vulnerability arises from inadequate escaping in the generic image output layout, allowing for cross-site scripting (XSS) attacks. This could enable an attacker to inject malicious scripts into web pages viewed by users, potentially compromising user data and session integrity. Organizations utilizing the affected products should prioritize remediation to safeguard against potential exploitation of this vulnerability.

CVE
CVE-2026-48953
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Lack of escaping leads to an XSS vulnerability in the generic image output layout.

Related CVEs

Other vulnerabilities affecting the same vendor(s)