AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-48954

MEDIUM · CVSS 6.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-07 · Last synced 2026-08-06

CyberRota Analysis

AI-Generated

A vulnerability exists due to improper validation in the language override feature, allowing for a generic cross-site scripting (XSS) attack. This could enable an attacker to inject malicious scripts into web pages viewed by users, potentially compromising user data and session integrity. Organizations utilizing products with this feature should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-48954
Severity
MEDIUM
CVSS
6.1
EPSS
0.15%

Original NVD Description

Improper validation leads to a generic XSS vector in the language override feature.

Related CVEs

Other vulnerabilities affecting the same vendor(s)