CyberRota Analysis
AI-GeneratedThe vulnerability arises from inadequate escaping in the generic image output layout, allowing for cross-site scripting (XSS) attacks. This could enable an attacker to inject malicious scripts into web pages viewed by users, potentially compromising user data and session integrity. Organizations utilizing the affected products should prioritize remediation to safeguard against potential exploitation of this vulnerability.
CVE
CVE-2026-48953
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%
Original NVD Description
Lack of escaping leads to an XSS vulnerability in the generic image output layout.
Related CVEs
Other vulnerabilities affecting the same vendor(s)